Zoom Desktop Client for Windows - Untrusted Search Path
- ZSB-23026
- CVE-2023-36540
- High
- 7.3
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:L
Untrusted search path in the installer for Zoom Desktop Client for Windows before version 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.
Users can help keep themselves secure by applying current updates or downloading the latest Zoom software with all current security updates from https://zoom.us/download.
- Zoom Desktop Client for Windows before version 5.14.5
Reported by sim0nsecurity.
Revision | Date | Description |
---|---|---|
1.0 | 08/08/2023 | Initial Publication |