CVE-2021-34411
Summary
| CVE | CVE-2021-34411 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-09-27 14:15:00 UTC |
| Updated | 2021-10-06 18:53:00 UTC |
| Description | During the installation process forZoom Rooms for Conference Room for Windows before version 5.3.0 it is possible to launch Internet Explorer with elevated privileges. If the installer was launched with elevated privileges such as by SCCM this can result in a local privilege escalation. |
Risk And Classification
Problem Types: CWE-269
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CWE - CWE-266: Incorrect Privilege Assignment (4.4) | MISC | cwe.mitre.org | |
| Security Bulletins | Zoom | CONFIRM | explore.zoom.us | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 376971 Zoom Rooms for Conference Room Local Privilege Escalation Vulnerability (ZSB-21007)