Security News

Cybersecurity news aggregator

🔓
HIGH Vulnerabilities HKCERT

Zoom Products Multiple Vulnerabilities

Multiple vulnerabilities in several Zoom products, including the Meeting SDK, Zoom Rooms, and Zoom Workplace, could allow a remote attacker to achieve sensitive information disclosure, remote code execution, or data manipulation. Affected versions are Zoom Meeting SDK and Zoom Rooms before version 7.1.5, Zoom Workplace before versions 7.1.5 or 7.0.6 (depending on branch), and specific older versions of the Zoom Workplace VDI Client and plugin. The vendor has provided specific security bulletins containing patches and remediation guidance.
Read Full Article →

Multiple vulnerabilities were identified in Zoom Products. A remote attacker could exploit some of these vulnerabilities to trigger sensitive information disclosure, remote code execution and data manipulation on the targeted system. Impact Remote Code Execution Information Disclosure Data Manipulation System / Technologies affected Zoom Meeting SDK before version 7.1.5 Zoom Rooms before version 7.1.5 Zoom Workplace before version 7.1.5 and 7.0.6 in their respective branch Zoom Workplace VDI Client for Windows before versions 7.0.11 and 6.6.16 in their respective branch Zoom Workplace VDI plugin before 7.0.11 and 6.6.15 in their respective branch Solutions Before installation of the software, please visit the vendor web-site for more details. Apply fixes issued by the vendor: https://www.zoom.com/en/trust/security-bulletin/zsb-26015/ https://www.zoom.com/en/trust/security-bulletin/zsb-26016/ https://www.zoom.com/en/trust/security-bulletin/zsb-26017/ https://www.zoom.com/en/trust/security-bulletin/zsb-26018/

Share this article