ZeroHour

CVE-2021-34420

CVSS 3.1
7.4 high
EPSS
<1%p34
Published
()
Modified
Description

The Zoom Client for Meetings for Windows installer before version 5.5.4 does not properly verify the signature of files with .msi, .ps1, and .bat extensions. This could lead to a malicious actor installing malicious software on a customer’s computer.

Vendors
zoom
Products
zoom client for meetings
Weakness
CWE-347
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.