CVE ID | Publié | Description | Score | Gravité |
---|---|---|---|---|
Improper input validation in some Zoom clients may allow an authenticated user to conduct a denial of service via network access. | 6.5 |
Moyen |
||
Business logic error in some Zoom clients may allow an authenticated user to conduct information disclosure via network access. | 6.5 |
Moyen |
||
Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via local access. | 4.9 |
Moyen |
||
Improper authentication in some Zoom clients before version 5.16.5 may allow an authenticated user to conduct a denial of service via network access. | 6.5 |
Moyen |
||
Improper authorization in some Zoom clients may allow an authorized user to conduct an escalation of privilege via network access. | 8.8 |
Haute |
||
Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access. | 6.5 |
Moyen |
||
Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access. | 6.5 |
Moyen |
||
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access. | 7.5 |
Haute |
||
Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access. | 6.5 |
Moyen |
||
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access. | 7.5 |
Haute |
||
Improper authentication in Zoom clients may allow an authenticated user to conduct a denial of service via network access. | 7.1 |
Haute |
||
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access. | 8.1 |
Haute |
||
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow a privileged user to enable information disclosure via network access. | 6.1 |
Moyen |
||
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access. | 7.1 |
Haute |
||
Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access. | 7.5 |
Haute |
||
Exposure of resource to wrong sphere in Zoom for Windows and Zoom for MacOS clients before 5.14.10 may allow an authenticated user to potentially enable information disclosure via network access. | 7.4 |
Haute |
||
Zoom for MacOSclients prior to 5.14.0 contain an improper access control vulnerability. A malicious user may be able to delete/replace Zoom Client files potentially causing a loss of integrity and availability to the Zoom Client. | 5.4 |
Moyen |
||
Zoom clients prior to 5.13.10 contain an HTML injection vulnerability. A malicious user could inject HTML into their display name potentially leading a victim to a malicious website during meeting creation. | 4.3 |
Moyen |