logo

Zoom stomps critical privilege escalation bug plus 6 other flaws

ID: 1d72dccb-5392-516e-bf90-41a9fb58057b

STIX ID: report--1d72dccb-5392-516e-bf90-41a9fb58057b

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2024-02-15

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Zoom disclosed a set of security vulnerabilities including a critical privilege-escalation flaw (CVE-2024-24691, CVSS 9.6) that may allow unauthenticated attackers network-based privilege escalation against Windows Zoom desktop, VDI, Rooms clients and the Meeting SDK; additional medium-to-high severity input validation, information disclosure, and untrusted search-path issues were also patched—users should apply the vendor updates promptly.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.