Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-22097 | Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via local access. |
| Link | Providers |
|---|---|
| https://www.zoom.com/en/trust/security-bulletin/ZSB-24005/ |
|
Fri, 04 Oct 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zoom
Zoom meeting Software Development Kit Zoom rooms Zoom vdi Windows Meeting Clients Zoom zoom |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:windows:*:* cpe:2.3:a:zoom:rooms:*:*:*:*:*:windows:*:* cpe:2.3:a:zoom:vdi_windows_meeting_clients:*:*:*:*:*:windows:*:* cpe:2.3:a:zoom:zoom:*:*:*:*:*:android:*:* cpe:2.3:a:zoom:zoom:*:*:*:*:*:iphone_os:*:* cpe:2.3:a:zoom:zoom:*:*:*:*:*:linux:*:* cpe:2.3:a:zoom:zoom:*:*:*:*:*:macos:*:* cpe:2.3:a:zoom:zoom:*:*:*:*:*:windows:*:* |
|
| Vendors & Products |
Zoom
Zoom meeting Software Development Kit Zoom rooms Zoom vdi Windows Meeting Clients Zoom zoom |
Fri, 27 Sep 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-287 | |
| Metrics |
ssvc
|
Fri, 27 Sep 2024 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via local access. | Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via local access. |
| Weaknesses | CWE-449 |
Status: PUBLISHED
Assigner: Zoom
Published:
Updated: 2024-09-27T19:28:28.333Z
Reserved: 2024-01-26T22:56:14.681Z
Link: CVE-2024-24698
Updated: 2024-08-01T23:28:11.903Z
Status : Modified
Published: 2024-02-14T00:15:47.967
Modified: 2024-11-21T08:59:31.897
Link: CVE-2024-24698
No data.
OpenCVE Enrichment
No data.
EUVD