VYPR

Zoom

by Zoom Video Communications, Inc.

CVEs (66)

  • CVE-2024-27242MedApr 9, 2024
    risk 0.27cvss 4.1epss 0.00

    Cross site scripting in Zoom Desktop Client for Linux before version 5.17.10 may allow an authenticated user to conduct a denial of service via network access.

  • CVE-2023-34121MedJun 13, 2023
    risk 0.27cvss 4.1epss 0.01

    Improper input validation in the Zoom for Windows, Zoom Rooms, Zoom VDI Windows Meeting clients before 5.14.0 may allow an authenticated user to potentially enable an escalation of privilege via network access.

  • CVE-2023-39206LowNov 14, 2023
    risk 0.24cvss 3.7epss 0.01

    Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.

  • CVE-2025-49462LowJul 10, 2025
    risk 0.23cvss 3.5epss 0.00

    Cross-site scripting in certain Zoom Clients before version 6.4.5 may allow an authenticated user to conduct a disclosure of information via network access.

  • CVE-2023-43588LowNov 15, 2023
    risk 0.23cvss 3.5epss 0.01

    Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access.

  • CVE-2023-28602LowJun 13, 2023
    risk 0.18cvss 2.8epss 0.00

    Zoom for Windows clients prior to 5.13.5 contain an improper verification of cryptographic signature vulnerability. A malicious user may potentially downgrade Zoom Client components to previous versions.

Page 4 of 4