CVE-2022-22781

The Zoom Client for Meetings for MacOS (Standard and for IT Admin) prior to version 5.9.6 failed to properly check the package version during the update process. This could lead to a malicious actor updating an unsuspecting user’s currently installed version to a less secure version.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:zoom:meetings:*:*:*:*:*:macos:*:*

History

09 May 2022, 18:21

Type Values Removed Values Added
CPE cpe:2.3:a:zoom:meetings:*:*:*:*:*:macos:*:*
References (MISC) https://explore.zoom.us/en/trust/security/security-bulletin/ - (MISC) https://explore.zoom.us/en/trust/security/security-bulletin/ - Vendor Advisory
CWE CWE-354
First Time Zoom
Zoom meetings
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5

28 Apr 2022, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-04-28 15:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-22781

Mitre link : CVE-2022-22781

CVE.ORG link : CVE-2022-22781


JSON object : View

Products Affected

zoom

  • meetings
CWE
CWE-354

Improper Validation of Integrity Check Value