CVE-2023-39210
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Aug 8, 2023
Updated: Aug 15, 2023
CWE ID 312
Summary
CVE-2023-39210 is a vulnerability affecting the Zoom Client SDK for Windows prior to version 5.15.0. This issue involves the cleartext storage of sensitive information, making it accessible to authenticated users with local access, leading to an information disclosure risk. This vulnerability could potentially expose confidential data, posing a security concern for organizations using this SDK. Users are encouraged to update to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Zoom Video Communications, Inc