CVE-2021-34420

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/11/2021
Last modified:
16/12/2021

Description

The Zoom Client for Meetings for Windows installer before version 5.5.4 does not properly verify the signature of files with .msi, .ps1, and .bat extensions. This could lead to a malicious actor installing malicious software on a customer’s computer.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:zoom:zoom_client_for_meetings:*:*:*:*:*:windows:*:* 5.4.4 (excluding)