ZeroHour

CVE-2023-39213

CVSS 3.1
9.8 critical
EPSS
1%p72
Published
()
Modified
Description

Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network access.

Vendors
zoom
Products
virtual desktop infrastructure, zoom
Weakness
CWE-176, CWE-74
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.