Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

393 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)1.1%—Zoom MeetingsZoom RoomsZoom Video Software Development KITZoom Virtual Desktop Infrastructure+114/11/202317/6/2026
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
ModificadaMedia (6.5)0.85%—Zoom MeetingsZoom Video Software Development KITZoom Virtual Desktop InfrastructureZoom14/11/202317/6/2026
Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access.
ModificadaAlta (7.5)1.1%—Zoom MeetingsZoom RoomsZoom Video Software Development KITZoom Virtual Desktop Infrastructure+114/11/202317/6/2026
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
ModificadaAlta (7.5)0.93%—Zoom Virtual Desktop InfrastructureZoom14/11/202317/6/2026
Uncontrolled resource consumption in Zoom Team Chat for Zoom Desktop Client for Windows and Zoom VDI Client may allow an unauthenticated user to conduct a disclosure of information via network access.
ModificadaMedia (5.5)0.21%—Zoom RoomsZoom Virtual Desktop Infrastructure14/11/202317/6/2026
Untrusted search path in Zoom Rooms Client for Windows and Zoom VDI Client may allow a privileged user to conduct a denial of service via local access.
ModificadaMedia (6.5)0.62%—Zoom MeetingsZoom RoomsZoom Virtual Desktop InfrastructureZoom14/11/202317/6/2026
Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access.
ModificadaMedia (6.5)1.1%—Zoom Meeting Software Development KITZoom Virtual Desktop InfrastructureZoom12/9/202317/6/2026
Improper authentication in Zoom clients may allow an authenticated user to conduct a denial of service via network access.
ModificadaAlta (7.5)0.64%—Zoom12/9/202317/6/2026
Improper input validation in Zoom Desktop Client for Linux before version 5.15.10 may allow an unauthenticated user to conduct a denial of service via network access.
ModificadaMedia (6.7)0.17%—Cleanzoom12/9/202317/6/2026
Untrusted search path in CleanZoom before file date 07/24/2023 may allow a privileged user to conduct an escalation of privilege via local access.
ModificadaAlta (8.1)0.96%—Zoom Meeting Software Development KITZoom RoomsZoom8/8/202317/6/2026
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access.
ModificadaCrítica (9.8)1.4%—Zoom Virtual Desktop InfrastructureZoom8/8/202317/6/2026
Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network access.
ModificadaMedia (5.5)0.22%—Zoom Rooms8/8/202317/6/2026
Untrusted search path in Zoom Rooms for Windows before version 5.15.5 may allow an authenticated user to enable a denial of service via local access.
ModificadaAlta (7.8)0.21%—Zoom RoomsZoom8/8/202317/6/2026
Improper privilege management in Zoom Desktop Client for Windows and Zoom Rooms for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via local access.
ModificadaMedia (5.5)0.13%—Zoom Meeting Software Development KIT8/8/202317/6/2026
Cleartext storage of sensitive information in Zoom Client SDK for Windows before 5.15.0 may allow an authenticated user to enable an information disclosure via local access.
ModificadaMedia (6.5)0.96%—Zoom8/8/202317/6/2026
Improper input validation in Zoom Desktop Client for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via network access.
ModificadaMedia (4.9)1.1%—Zoom RoomsZoom Virtual Desktop InfrastructureZoom8/8/202317/6/2026
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow a privileged user to enable information disclosure via network access.
ModificadaAlta (7.5)1.6%—Zoom Meeting Software Development KITZoom Video Software Development KIT8/8/202317/6/2026
Improper input validation in Zoom SDK’s before 5.14.10 may allow an unauthenticated user to enable a denial of service via network access.
ModificadaCrítica (9.8)1.2%—Zoom8/8/202317/6/2026
Improper input validation in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalation of privilege via network access.
ModificadaAlta (8.8)0.53%—Zoom8/8/202317/6/2026
Insufficient verification of data authenticity in Zoom Desktop Client for Windows before 5.14.5 may allow an authenticated user to enable an escalation of privilege via network access.
ModificadaAlta (7.8)0.32%—Zoom8/8/202317/6/2026
Untrusted search path in the installer for Zoom Desktop Client for Windows before 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.
ModificadaMedia (6.5)1.2%—Zoom RoomsZoom Virtual Desktop InfrastructureZoom8/8/202317/6/2026
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access.
ModificadaCrítica (9.8)1.6%—Zoom8/8/202317/6/2026
Path traversal in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalation of privilege via network access.
ModificadaAlta (7.5)0.81%—Zoom Meeting Software Development KITZoom Video Software Development KIT8/8/202317/6/2026
Uncontrolled resource consumption in Zoom SDKs before 5.14.7 may allow an unauthenticated user to enable a denial of service via network access.
ModificadaAlta (7.5)1.5%—Zoom RoomsZoom Virtual Desktop InfrastructureZoom8/8/202317/6/2026
Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access.
ModificadaMedia (5.3)0.40%—Imdpen Video Conferencing With Zoom26/7/202317/6/2026
The Video Conferencing with Zoom plugin for WordPress is vulnerable to Sensitive Information Exposure due to hardcoded encryption key on the 'vczapi_encrypt_decrypt' function in versions up to, and including, 4.2.1. This makes it possible for unauthenticated attackers to decrypt and view the meeting id and password.
Orbitaley — Vulnerabilidades