Zoom stomps critical privilege escalation bug plus 6 other flaws
ID: 1d72dccb-5392-516e-bf90-41a9fb58057b
STIX ID: report--1d72dccb-5392-516e-bf90-41a9fb58057b
Feed Name: The Register (Security)
Threat Score
Zoom disclosed a set of security vulnerabilities including a critical privilege-escalation flaw (CVE-2024-24691, CVSS 9.6) that may allow unauthenticated attackers network-based privilege escalation against Windows Zoom desktop, VDI, Rooms clients and the Meeting SDK; additional medium-to-high severity input validation, information disclosure, and untrusted search-path issues were also patched—users should apply the vendor updates promptly.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
