CVE-2023-39203
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Nov 14, 2023
Updated: Nov 21, 2023
CWE ID 400
Summary
CVE-2023-39203 is a vulnerability affecting Zoom Team Chat in the Zoom Desktop Client for Windows and Zoom VDI Client. An unauthenticated user can exploit this uncontrolled resource consumption issue to disclose information through network access, potentially leading to significant data exposure. This vulnerability may allow attackers to access sensitive information without proper authorization, posing a serious risk to organizations using these Zoom products. It is crucial for users to update their software to the latest version to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Zoom Cloud Meetings
- Zoom Virtual Desktop Infrastructure
Affected Vendors
- Zoom Video Communications, Inc