Vulnerabilities > Zoom

DATE CVE VULNERABILITY TITLE RISK
2022-09-16 CVE-2022-28758 Unspecified vulnerability in Zoom On-Premise Meeting Connector MMR 4.6.239.20200613/4.6.365.20210703/4.8.102.20220310
Zoom On-Premise Meeting Connector MMR before version 4.8.20220815.130 contains an improper access control vulnerability.
network
low complexity
zoom
8.2
2022-08-18 CVE-2022-28757 Unspecified vulnerability in Zoom Meetings
The Zoom Client for Meetings for macOS (Standard and for IT Admin) starting with version 5.7.3 and before 5.11.6 contains a vulnerability in the auto update process.
local
low complexity
zoom
7.8
2022-08-17 CVE-2022-28751 Improper Verification of Cryptographic Signature vulnerability in Zoom Meetings
The Zoom Client for Meetings for MacOS (Standard and for IT Admin) before version 5.11.3 contains a vulnerability in the package signature validation during the update process.
local
low complexity
zoom CWE-347
7.8
2022-08-17 CVE-2022-28752 Unspecified vulnerability in Zoom Rooms
Zoom Rooms for Conference Rooms for Windows versions before 5.11.0 are susceptible to a Local Privilege Escalation vulnerability.
local
low complexity
zoom
7.8
2022-08-15 CVE-2022-28756 Unspecified vulnerability in Zoom Meetings
The Zoom Client for Meetings for macOS (Standard and for IT Admin) starting with version 5.7.3 and before 5.11.5 contains a vulnerability in the auto update process.
local
low complexity
zoom
7.8
2022-08-11 CVE-2022-28750 Out-of-bounds Write vulnerability in Zoom Meeting Connector
Zoom On-Premise Meeting Connector Zone Controller (ZC) before version 4.8.20220419.112 fails to properly parse STUN error codes, which can result in memory corruption and could allow a malicious actor to crash the application.
network
low complexity
zoom CWE-787
critical
9.8
2022-08-11 CVE-2022-28753 Unspecified vulnerability in Zoom Meeting Connector
Zoom On-Premise Meeting Connector MMR before version 4.8.129.20220714 contains an improper access control vulnerability.
network
low complexity
zoom
5.4
2022-08-11 CVE-2022-28754 Unspecified vulnerability in Zoom Meeting Connector
Zoom On-Premise Meeting Connector MMR before version 4.8.129.20220714 contains an improper access control vulnerability.
network
low complexity
zoom
5.4
2022-08-11 CVE-2022-28755 Open Redirect vulnerability in Zoom
The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.11.0 are susceptible to a URL parsing vulnerability.
network
low complexity
zoom CWE-601
6.1
2022-06-15 CVE-2022-22788 Uncontrolled Search Path Element vulnerability in Zoom Meetings and Rooms
The Zoom Opener installer is downloaded by a user from the Launch meeting page, when attempting to join a meeting without having the Zoom Meeting Client installed.
local
low complexity
zoom CWE-427
7.8