Zoom VDI client installer prior to 5.14.0 contains an improper access control vulnerability. A malicious user may potentially delete local files without proper permissions.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://explore.zoom.us/en/trust/security/security-bulletin/ |
|
History
Thu, 02 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 19 Sep 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 |
Thu, 19 Sep 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-73 |
Status: PUBLISHED
Assigner: Zoom
Published: 2023-06-13T17:34:55.364Z
Updated: 2025-01-02T20:11:09.928Z
Reserved: 2023-03-17T13:27:32.369Z
Link: CVE-2023-28603
Updated: 2024-08-02T13:43:22.952Z
Status : Modified
Published: 2023-06-13T18:15:21.760
Modified: 2024-11-21T07:55:39.137
Link: CVE-2023-28603
No data.