Untrusted Search Path Vulnerability in Zoom Rooms for Windows
CVE-2023-39212

7.9HIGH

Key Information:

Vendor
CVE Published:
8 August 2023

Summary

The Zoom Rooms for Windows software contains a vulnerability related to an untrusted search path that affects versions prior to 5.15.5. This issue may allow an authenticated user to initiate a denial of service attack through local access, potentially disrupting the functionality of the application.

Affected Version(s)

Zoom Rooms for Windows Windows before 5.15.5

References

CVSS V3.1

Score:
7.9
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.