CVE-2023-39214
08.08.2023, 22:15
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access.Enginsight
Vendor | Product | Version |
---|---|---|
zoom | meeting_software_development_kit | 𝑥 < 5.15.5 |
zoom | meeting_software_development_kit | 𝑥 < 5.15.5 |
zoom | meeting_software_development_kit | 𝑥 < 5.15.5 |
zoom | rooms | 𝑥 < 5.15.5 |
zoom | rooms | 𝑥 < 5.15.5 |
zoom | rooms | 𝑥 < 5.15.5 |
zoom | zoom | 𝑥 < 5.15.5 |
zoom | zoom | 𝑥 < 5.15.5 |
zoom | zoom | 𝑥 < 5.15.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-749 - Exposed Dangerous Method or FunctionThe software provides an Applications Programming Interface (API) or similar interface for interaction with external actors, but the interface includes a dangerous method or function that is not properly restricted.
- CWE-668 - Exposure of Resource to Wrong SphereThe product exposes a resource to the wrong control sphere, providing unintended actors with inappropriate access to the resource.