CVE-2023-34114
6.5MEDIUM
Key Information
- Status
- Zoom for Windows Client
- Zoom for MacOS Client
- Vendor
- CVE Published:
- 13 June 2023
Summary
Exposure of resource to wrong sphere in Zoom for Windows and Zoom for MacOS clients before 5.14.10 may allow an authenticated user to potentially enable information disclosure via network access.
Affected Version(s)
Zoom for Windows Client = before 5.14.10
Zoom for MacOS Client = before 5.14.10
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Collectors
NVD DatabaseMitre Database