CVE-2023-34121

Improper input validation in the Zoom for Windows, Zoom Rooms, Zoom VDI Windows Meeting clients before 5.14.0 may allow an authenticated user to potentially enable an escalation of privilege via network access.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:zoom:rooms:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:zoom:*:*:*:*:*:windows:*:*

Configuration 2 (hide)

AND
cpe:2.3:a:zoom:virtual_desktop_infrastructure:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Jun 2023, 20:54

Type Values Removed Values Added
CPE cpe:2.3:a:zoom:zoom:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:rooms:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:virtual_desktop_infrastructure:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
References (MISC) https://explore.zoom.us/en/trust/security/security-bulletin/ - (MISC) https://explore.zoom.us/en/trust/security/security-bulletin/ - Vendor Advisory
CWE NVD-CWE-noinfo
First Time Zoom zoom
Zoom rooms
Zoom
Zoom virtual Desktop Infrastructure
Microsoft windows
Microsoft
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8

13 Jun 2023, 18:27

Type Values Removed Values Added
New CVE

Information

Published : 2023-06-13 18:15

Updated : 2023-12-10 15:01


NVD link : CVE-2023-34121

Mitre link : CVE-2023-34121

CVE.ORG link : CVE-2023-34121


JSON object : View

Products Affected

microsoft

  • windows

zoom

  • rooms
  • zoom
  • virtual_desktop_infrastructure
CWE
NVD-CWE-noinfo CWE-20

Improper Input Validation