Improper Access Control in Zoom's VDI Client Installer
CVE-2023-28603
7.1HIGH
Key Information:
- Vendor
- CVE Published:
- 13 June 2023
What is CVE-2023-28603?
The Zoom VDI client installer, prior to version 5.14.0, is susceptible to an improper access control vulnerability. This flaw allows a malicious user to potentially gain unauthorized access and delete local files without sufficient permissions, posing a significant risk to user data integrity. Users are encouraged to update to the latest version to mitigate this vulnerability.
Affected Version(s)
Zoom VDI Windows Meeting Client before 5.14.0