Vulnerabilities > Zoom > Meetings > 5.11.5

DATE CVE VULNERABILITY TITLE RISK
2023-11-15 CVE-2023-43582 Improper Authentication vulnerability in Zoom products
Improper authorization in some Zoom clients may allow an authorized user to conduct an escalation of privilege via network access.
network
low complexity
zoom CWE-287
8.8
2023-11-14 CVE-2023-39199 Unspecified vulnerability in Zoom products
Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access.
network
low complexity
zoom
6.5
2023-11-14 CVE-2023-39204 Classic Buffer Overflow vulnerability in Zoom products
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
network
low complexity
zoom CWE-120
7.5
2023-11-14 CVE-2023-39205 Improper Check for Unusual or Exceptional Conditions vulnerability in Zoom products
Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access.
network
low complexity
zoom CWE-754
6.5
2023-11-14 CVE-2023-39206 Classic Buffer Overflow vulnerability in Zoom products
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
network
low complexity
zoom CWE-120
7.5
2022-11-17 CVE-2022-28768 Race Condition vulnerability in Zoom Meetings
The Zoom Client for Meetings Installer for macOS (Standard and for IT Admin) before version 5.12.6 contains a local privilege escalation vulnerability.
local
low complexity
zoom CWE-362
7.8
2022-11-14 CVE-2022-28764 Incomplete Cleanup vulnerability in Zoom Meetings, Rooms and VDI Windows Meeting Clients
The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.12.6 is susceptible to a local information exposure vulnerability.
local
low complexity
zoom CWE-459
3.3
2022-10-31 CVE-2022-28763 Open Redirect vulnerability in Zoom Meetings and Virtual Desktop Infrastructure
The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.12.2 is susceptible to a URL parsing vulnerability.
network
low complexity
zoom CWE-601
critical
9.6
2022-10-14 CVE-2022-28762 Unspecified vulnerability in Zoom Meetings 5.11.3/5.11.5
Zoom Client for Meetings for macOS (Standard and for IT Admin) starting with 5.10.6 and prior to 5.12.0 contains a debugging port misconfiguration.
local
low complexity
zoom
7.8