CVE-2024-24699

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
14/02/2024
Last modified:
04/10/2024

Description

Business logic error in some Zoom clients may allow an authenticated user to conduct information disclosure via network access.<br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:zoom:meeting_sdk:*:*:*:*:*:*:*:* 5.16.5 (excluding)
cpe:2.3:a:zoom:rooms:*:*:*:*:*:*:*:* 5.17.0 (excluding)
cpe:2.3:a:zoom:vdi_windows_meeting_clients:*:*:*:*:*:windows:*:* 5.15.15 (excluding)
cpe:2.3:a:zoom:vdi_windows_meeting_clients:*:*:*:*:*:windows:*:* 5.15.15 (excluding) 5.16.10 (excluding)
cpe:2.3:a:zoom:vdi_windows_meeting_clients:*:*:*:*:*:windows:*:* 5.16.10 (excluding) 5.17.5 (excluding)
cpe:2.3:a:zoom:zoom:*:*:*:*:*:android:*:* 5.16.5 (excluding)
cpe:2.3:a:zoom:zoom:*:*:*:*:*:iphone_os:*:* 5.16.5 (excluding)
cpe:2.3:a:zoom:zoom:*:*:*:*:*:linux:*:* 5.16.5 (excluding)
cpe:2.3:a:zoom:zoom:*:*:*:*:*:macos:*:* 5.16.5 (excluding)
cpe:2.3:a:zoom:zoom:*:*:*:*:*:windows:*:* 5.16.5 (excluding)


References to Advisories, Solutions, and Tools