ZeroHour

CVE-2023-49647

CVSS 3.1
7.8 high
EPSS
<1%p16
Published
()
Modified
Description

Improper access control in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows before version 5.16.10 may allow an authenticated user to conduct an escalation of privilege via local access.

Vendors
zoom
Products
meeting software development kit, video software development kit, zoom, virtual desktop infrastructure
Weakness
CWE-266
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.