Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2737▼ 486 respecto a la semana anterior
Críticas / altas1302▼ 188 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
393 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 1.1% | — | Zoom MeetingsZoom RoomsZoom Video Software Development KITZoom Virtual Desktop Infrastructure+1 | 14/11/2023 | 17/6/2026 | Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access. | |
| Modificada | Media (6.5) | 0.85% | — | Zoom MeetingsZoom Video Software Development KITZoom Virtual Desktop InfrastructureZoom | 14/11/2023 | 17/6/2026 | Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of service via network access. | |
| Modificada | Alta (7.5) | 1.1% | — | Zoom MeetingsZoom RoomsZoom Video Software Development KITZoom Virtual Desktop Infrastructure+1 | 14/11/2023 | 17/6/2026 | Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access. | |
| Modificada | Alta (7.5) | 0.93% | — | Zoom Virtual Desktop InfrastructureZoom | 14/11/2023 | 17/6/2026 | Uncontrolled resource consumption in Zoom Team Chat for Zoom Desktop Client for Windows and Zoom VDI Client may allow an unauthenticated user to conduct a disclosure of information via network access. | |
| Modificada | Media (5.5) | 0.21% | — | Zoom RoomsZoom Virtual Desktop Infrastructure | 14/11/2023 | 17/6/2026 | Untrusted search path in Zoom Rooms Client for Windows and Zoom VDI Client may allow a privileged user to conduct a denial of service via local access. | |
| Modificada | Media (6.5) | 0.62% | — | Zoom MeetingsZoom RoomsZoom Virtual Desktop InfrastructureZoom | 14/11/2023 | 17/6/2026 | Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access. | |
| Modificada | Media (6.5) | 1.1% | — | Zoom Meeting Software Development KITZoom Virtual Desktop InfrastructureZoom | 12/9/2023 | 17/6/2026 | Improper authentication in Zoom clients may allow an authenticated user to conduct a denial of service via network access. | |
| Modificada | Alta (7.5) | 0.64% | — | Zoom | 12/9/2023 | 17/6/2026 | Improper input validation in Zoom Desktop Client for Linux before version 5.15.10 may allow an unauthenticated user to conduct a denial of service via network access. | |
| Modificada | Media (6.7) | 0.17% | — | Cleanzoom | 12/9/2023 | 17/6/2026 | Untrusted search path in CleanZoom before file date 07/24/2023 may allow a privileged user to conduct an escalation of privilege via local access. | |
| Modificada | Alta (8.1) | 0.96% | — | Zoom Meeting Software Development KITZoom RoomsZoom | 8/8/2023 | 17/6/2026 | Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access. | |
| Modificada | Crítica (9.8) | 1.4% | — | Zoom Virtual Desktop InfrastructureZoom | 8/8/2023 | 17/6/2026 | Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network access. | |
| Modificada | Media (5.5) | 0.22% | — | Zoom Rooms | 8/8/2023 | 17/6/2026 | Untrusted search path in Zoom Rooms for Windows before version 5.15.5 may allow an authenticated user to enable a denial of service via local access. | |
| Modificada | Alta (7.8) | 0.21% | — | Zoom RoomsZoom | 8/8/2023 | 17/6/2026 | Improper privilege management in Zoom Desktop Client for Windows and Zoom Rooms for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via local access. | |
| Modificada | Media (5.5) | 0.13% | — | Zoom Meeting Software Development KIT | 8/8/2023 | 17/6/2026 | Cleartext storage of sensitive information in Zoom Client SDK for Windows before 5.15.0 may allow an authenticated user to enable an information disclosure via local access. | |
| Modificada | Media (6.5) | 0.96% | — | Zoom | 8/8/2023 | 17/6/2026 | Improper input validation in Zoom Desktop Client for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via network access. | |
| Modificada | Media (4.9) | 1.1% | — | Zoom RoomsZoom Virtual Desktop InfrastructureZoom | 8/8/2023 | 17/6/2026 | Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow a privileged user to enable information disclosure via network access. | |
| Modificada | Alta (7.5) | 1.6% | — | Zoom Meeting Software Development KITZoom Video Software Development KIT | 8/8/2023 | 17/6/2026 | Improper input validation in Zoom SDK’s before 5.14.10 may allow an unauthenticated user to enable a denial of service via network access. | |
| Modificada | Crítica (9.8) | 1.2% | — | Zoom | 8/8/2023 | 17/6/2026 | Improper input validation in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalation of privilege via network access. | |
| Modificada | Alta (8.8) | 0.53% | — | Zoom | 8/8/2023 | 17/6/2026 | Insufficient verification of data authenticity in Zoom Desktop Client for Windows before 5.14.5 may allow an authenticated user to enable an escalation of privilege via network access. | |
| Modificada | Alta (7.8) | 0.32% | — | Zoom | 8/8/2023 | 17/6/2026 | Untrusted search path in the installer for Zoom Desktop Client for Windows before 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access. | |
| Modificada | Media (6.5) | 1.2% | — | Zoom RoomsZoom Virtual Desktop InfrastructureZoom | 8/8/2023 | 17/6/2026 | Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access. | |
| Modificada | Crítica (9.8) | 1.6% | — | Zoom | 8/8/2023 | 17/6/2026 | Path traversal in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalation of privilege via network access. | |
| Modificada | Alta (7.5) | 0.81% | — | Zoom Meeting Software Development KITZoom Video Software Development KIT | 8/8/2023 | 17/6/2026 | Uncontrolled resource consumption in Zoom SDKs before 5.14.7 may allow an unauthenticated user to enable a denial of service via network access. | |
| Modificada | Alta (7.5) | 1.5% | — | Zoom RoomsZoom Virtual Desktop InfrastructureZoom | 8/8/2023 | 17/6/2026 | Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access. | |
| Modificada | Media (5.3) | 0.40% | — | Imdpen Video Conferencing With Zoom | 26/7/2023 | 17/6/2026 | The Video Conferencing with Zoom plugin for WordPress is vulnerable to Sensitive Information Exposure due to hardcoded encryption key on the 'vczapi_encrypt_decrypt' function in versions up to, and including, 4.2.1. This makes it possible for unauthenticated attackers to decrypt and view the meeting id and password. |