CVE-2017-15049
19.12.2017, 15:29
The ZoomLauncher binary in the Zoom client for Linux before 2.0.115900.1201 does not properly sanitize user input when constructing a shell command, which allows remote attackers to execute arbitrary code by leveraging the zoommtg:// scheme handler.
Vendor | Product | Version |
---|---|---|
zoom | zoom | 𝑥 < 2.0.115900.1201 |
𝑥
= Vulnerable software versions