CVE-2023-36535

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Aug 8, 2023
Updated: Aug 11, 2023
CWE ID 602

Summary

CVE-2023-36535 is a vulnerability affecting Zoom clients prior to version 5.14.10. It allows authenticated users to bypass server-side security checks, potentially enabling information disclosure through network access. This issue lies in the client-side enforcement of security measures, making it crucial for users to update their Zoom clients to the latest version to mitigate this risk. Failure to do so may expose sensitive data to unauthorized access.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share