CVE-2023-28598
6.5MEDIUM
Key Information
- Status
- Zoom For Linux Clients
- Vendor
- CVE Published:
- 13 June 2023
Summary
Zoom for Linux clients prior to 5.13.10 contain an HTML injection vulnerability. If a victim starts a chat with a malicious user it could result in a Zoom application crash.
Affected Version(s)
Zoom for Linux clients = before 5.13.10
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Risk change from: 6.5 to: 7.5 - (HIGH)
Vulnerability published.
Vulnerability Reserved.
Collectors
NVD DatabaseMitre Database