Untrusted Search Path Vulnerability in Zoom Rooms for Windows
CVE-2023-39212
7.9HIGH
Key Information:
- Status
- Vendor
- CVE Published:
- 8 August 2023
Summary
The Zoom Rooms for Windows software contains a vulnerability related to an untrusted search path that affects versions prior to 5.15.5. This issue may allow an authenticated user to initiate a denial of service attack through local access, potentially disrupting the functionality of the application.
Affected Version(s)
Zoom Rooms for Windows Windows before 5.15.5
References
CVSS V3.1
Score:
7.9
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved