Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
89 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.9) | 0.49% | — | Zoom Meeting Software Development KITZoom RoomsZoom Rooms ControllerZoom Workplace+2 | 14/8/2024 | 17/6/2026 | Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged user to conduct an information disclosure via network access. | |
| Analizada | Alta (8.5) | 0.63% | — | Zoom RoomsZoom WorkplaceZoom Workplace DesktopZoom Workplace Virtual Desktop Infrastructure | 14/8/2024 | 17/6/2026 | Buffer overflow in some Zoom Workplace Apps and Rooms Clients may allow an authenticated user to conduct an escalation of privilege via network access. | |
| Modificada | Media (4.9) | 0.51% | — | Zoom Meeting Software Development KITZoom RoomsZoom Rooms ControllerZoom Workplace+2 | 14/8/2024 | 17/6/2026 | Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged user to conduct an information disclosure via network access. | |
| Modificada | Media (4.9) | 0.49% | — | Zoom Meeting Software Development KITZoom RoomsZoom Rooms ControllerZoom Workplace+2 | 14/8/2024 | 17/6/2026 | Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged user to conduct an information disclosure via network access. | |
| Analizada | Media (6.5) | 0.56% | — | Zoom RoomsZoom WorkplaceZoom Workplace DesktopZoom Workplace Virtual Desktop Infrastructure | 14/8/2024 | 17/6/2026 | Protection mechanism failure for some Zoom Workplace Apps and SDKs may allow an authenticated user to conduct information disclosure via network access. | |
| Modificada | Media (6.8) | 0.44% | — | Zoom Meeting Software Development KITZoom Workplace DesktopZoom Workplace Virtual Desktop Infrastructure | 15/7/2024 | 17/6/2026 | Race condition in Team Chat for some Zoom Workplace Apps and SDKs for Windows may allow an authenticated user to conduct information disclosure via network access. | |
| Analizada | Alta (7.5) | 0.43% | — | Zoom Meeting Software Development KITZoom RoomsZoom WorkplaceZoom Workplace Desktop+1 | 15/7/2024 | 17/6/2026 | Improper input validation in some Zoom Apps and SDKs may allow an authenticated user to conduct a denial of service via network access. | |
| Analizada | Alta (7.8) | 0.17% | — | Zoom RoomsZoom Workplace DesktopZoom Workplace Virtual Desktop Infrastructure | 15/7/2024 | 17/6/2026 | Improper input validation in the installer for some Zoom Apps for Windows may allow an authenticated user to conduct a privilege escalation via local access. | |
| Analizada | Alta (7.8) | 0.10% | — | Zoom Workplace Virtual Desktop Infrastructure | 15/5/2024 | 17/6/2026 | Insufficient verification of data authenticity in the installer for Zoom Workplace VDI App for Windows may allow an authenticated user to conduct an escalation of privilege via local access. | |
| Analizada | Media (6.5) | 0.41% | — | Zoom Meeting Software Development KITZoom WorkplaceZoom Workplace DesktopZoom Workplace Virtual Desktop Infrastructure | 15/5/2024 | 17/6/2026 | Buffer overflow in some Zoom Workplace Apps and SDK’s may allow an authenticated user to conduct a denial of service via network access. | |
| Modificada | Alta (7.8) | 0.25% | — | Zoom Meeting Software Development KITZoom Video Software Development KITZoomZoom Virtual Desktop Infrastructure | 12/1/2024 | 17/6/2026 | Improper access control in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows before version 5.16.10 may allow an authenticated user to conduct an escalation of privilege via local access. | |
| Modificada | Media (6.5) | 0.40% | — | Zoom Meeting Software Development KITZoom Video Software Development KITZoom Virtual Desktop InfrastructureZoom | 13/12/2023 | 17/6/2026 | Improper authentication in some Zoom clients before version 5.16.5 may allow an authenticated user to conduct a denial of service via network access. | |
| Modificada | Alta (8.8) | 0.99% | — | Zoom Meeting Software Development KITZoom Video Software Development KITZoom Virtual Desktop InfrastructureZoom | 13/12/2023 | 17/6/2026 | Path traversal in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom SDKs for Windows may allow an authenticated user to conduct an escalation of privilege via network access. | |
| Modificada | Media (6.5) | 0.65% | — | Zoom MeetingsZoom Virtual Desktop InfrastructureZoom | 15/11/2023 | 17/6/2026 | Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access. | |
| Modificada | Alta (8.8) | 0.66% | — | Zoom MeetingsZoom RoomsZoom Virtual Desktop InfrastructureZoom | 15/11/2023 | 17/6/2026 | Improper authorization in some Zoom clients may allow an authorized user to conduct an escalation of privilege via network access. | |
| Modificada | Alta (7.5) | 1.1% | — | Zoom MeetingsZoom RoomsZoom Video Software Development KITZoom Virtual Desktop Infrastructure+1 | 14/11/2023 | 17/6/2026 | Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access. | |
| Modificada | Media (6.5) | 0.85% | — | Zoom MeetingsZoom Video Software Development KITZoom Virtual Desktop InfrastructureZoom | 14/11/2023 | 17/6/2026 | Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access. | |
| Modificada | Alta (7.5) | 1.1% | — | Zoom MeetingsZoom RoomsZoom Video Software Development KITZoom Virtual Desktop Infrastructure+1 | 14/11/2023 | 17/6/2026 | Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access. | |
| Modificada | Alta (7.5) | 0.93% | — | Zoom Virtual Desktop InfrastructureZoom | 14/11/2023 | 17/6/2026 | Uncontrolled resource consumption in Zoom Team Chat for Zoom Desktop Client for Windows and Zoom VDI Client may allow an unauthenticated user to conduct a disclosure of information via network access. | |
| Modificada | Media (5.5) | 0.21% | — | Zoom RoomsZoom Virtual Desktop Infrastructure | 14/11/2023 | 17/6/2026 | Untrusted search path in Zoom Rooms Client for Windows and Zoom VDI Client may allow a privileged user to conduct a denial of service via local access. | |
| Modificada | Media (6.5) | 0.62% | — | Zoom MeetingsZoom RoomsZoom Virtual Desktop InfrastructureZoom | 14/11/2023 | 17/6/2026 | Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access. | |
| Modificada | Media (6.5) | 1.1% | — | Zoom Meeting Software Development KITZoom Virtual Desktop InfrastructureZoom | 12/9/2023 | 17/6/2026 | Improper authentication in Zoom clients may allow an authenticated user to conduct a denial of service via network access. | |
| Modificada | Crítica (9.8) | 1.4% | — | Zoom Virtual Desktop InfrastructureZoom | 8/8/2023 | 17/6/2026 | Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network access. | |
| Modificada | Media (4.9) | 1.1% | — | Zoom RoomsZoom Virtual Desktop InfrastructureZoom | 8/8/2023 | 17/6/2026 | Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow a privileged user to enable information disclosure via network access. | |
| Modificada | Media (6.5) | 1.2% | — | Zoom RoomsZoom Virtual Desktop InfrastructureZoom | 8/8/2023 | 17/6/2026 | Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access. |