VYPR

Zoom client for Linux

by Zoom Video Communications, Inc.

CVEs (3)

  • CVE-2017-15049HigDec 19, 2017
    risk 0.62cvss 8.8epss 0.17

    The ZoomLauncher binary in the Zoom client for Linux before 2.0.115900.1201 does not properly sanitize user input when constructing a shell command, which allows remote attackers to execute arbitrary code by leveraging the zoommtg:// scheme handler.

  • CVE-2017-15048HigDec 19, 2017
    risk 0.61cvss 8.8epss 0.10

    Stack-based buffer overflow in the ZoomLauncher binary in the Zoom client for Linux before 2.0.115900.1201 allows remote attackers to execute arbitrary code by leveraging the zoommtg:// scheme handler.

  • CVE-2023-28599MedJun 13, 2023
    risk 0.28cvss 4.3epss 0.01

    Zoom clients prior to 5.13.10 contain an HTML injection vulnerability. A malicious user could inject HTML into their display name potentially leading a victim to a malicious website during meeting creation.