{"api_version":"1","generated_at":"2026-07-23T20:58:57+00:00","cve":"CVE-2022-22785","urls":{"html":"https://cve.report/CVE-2022-22785","api":"https://cve.report/api/cve/CVE-2022-22785.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2022-22785","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2022-22785"},"summary":{"title":"CVE-2022-22785","description":"The Zoom Client for Meetings (for Android, iOS, Linux, MacOS, and Windows) before version 5.10.0 failed to properly constrain client session cookies to Zoom domains. This issue could be used in a more sophisticated attack to send an unsuspecting users Zoom-scoped session cookies to a non-Zoom domain. This could potentially allow for spoofing of a Zoom user.","state":"PUBLIC","assigner":"security@zoom.us","published_at":"2022-05-18 16:15:00","updated_at":"2022-05-27 16:13:00"},"problem_types":["CWE-565"],"metrics":[],"references":[{"url":"https://explore.zoom.us/en/trust/security/security-bulletin","name":"https://explore.zoom.us/en/trust/security/security-bulletin","refsource":"MISC","tags":[],"title":"Security Bulletin | Zoom","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2022-22785","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2022-22785","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[{"source":"LEGACY","value":"Ivan Fratric of Google Project Zero","lang":""}],"nvd_cpes":[{"cve_year":"2022","cve_id":"22785","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"zoom","cpe5":"meetings","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"android","cpe12":"*","cpe13":"*"},{"cve_year":"2022","cve_id":"22785","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"zoom","cpe5":"meetings","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"iphone_os","cpe12":"*","cpe13":"*"},{"cve_year":"2022","cve_id":"22785","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"zoom","cpe5":"meetings","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"linux","cpe12":"*","cpe13":"*"},{"cve_year":"2022","cve_id":"22785","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"zoom","cpe5":"meetings","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"macos","cpe12":"*","cpe13":"*"},{"cve_year":"2022","cve_id":"22785","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"zoom","cpe5":"meetings","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[{"cve":"CVE-2022-22785","qid":"376638","title":"Zoom Client Multiple Security Vulnerabilities"},{"cve":"CVE-2022-22785","qid":"630814","title":"Zoom Client for Meetings For Android Extensible Markup Language (XML) Injection Vulnerability"}]},"source_records":{"cve_program":{"CVE_data_meta":{"AKA":"Zoom Video Communications Inc","ASSIGNER":"security@zoom.us","DATE_PUBLIC":"2022-05-17T12:00:00.000Z","ID":"CVE-2022-22785","STATE":"PUBLIC","TITLE":"Improperly constrained session cookies in Zoom Client for Meetings"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"Zoom Client for Meetings for Android","version":{"version_data":[{"version_affected":"<","version_value":"5.10.0"}]}},{"product_name":"Zoom Client for Meetings for iOS","version":{"version_data":[{"version_affected":"<","version_value":"5.10.0"}]}},{"product_name":"Zoom Client for Meetings for Linux","version":{"version_data":[{"version_affected":"<","version_value":"5.10.0"}]}},{"product_name":"Zoom Client for Meetings for MacOS","version":{"version_data":[{"version_affected":"<","version_value":"5.10.0"}]}},{"product_name":"Zoom Client for Meetings for Windows","version":{"version_data":[{"version_affected":"<","version_value":"5.10.0"}]}}]},"vendor_name":"Zoom Video Communications Inc"}]}},"credit":[{"lang":"eng","value":"Ivan Fratric of Google Project Zero"}],"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The Zoom Client for Meetings (for Android, iOS, Linux, MacOS, and Windows) before version 5.10.0 failed to properly constrain client session cookies to Zoom domains. This issue could be used in a more sophisticated attack to send an unsuspecting users Zoom-scoped session cookies to a non-Zoom domain. This could potentially allow for spoofing of a Zoom user."}]},"impact":{"cvss":{"attackComplexity":"HIGH","attackVector":"NETWORK","availabilityImpact":"LOW","baseScore":5.9,"baseSeverity":"MEDIUM","confidentialityImpact":"HIGH","integrityImpact":"NONE","privilegesRequired":"LOW","scope":"UNCHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:L","version":"3.1"}},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"Exposure of Resource to Wrong Sphere"}]}]},"references":{"reference_data":[{"refsource":"MISC","url":"https://explore.zoom.us/en/trust/security/security-bulletin","name":"https://explore.zoom.us/en/trust/security/security-bulletin"}]},"source":{"discovery":"USER"}},"nvd":{"publishedDate":"2022-05-18 16:15:00","lastModifiedDate":"2022-05-27 16:13:00","problem_types":["CWE-565"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"NONE","baseScore":9.1,"baseSeverity":"CRITICAL"},"exploitabilityScore":3.9,"impactScore":5.2},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE","baseScore":6.4},"severity":"MEDIUM","exploitabilityScore":10,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:zoom:meetings:*:*:*:*:*:macos:*:*","versionEndExcluding":"5.10.0","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:zoom:meetings:*:*:*:*:*:linux:*:*","versionEndExcluding":"5.10.0","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:zoom:meetings:*:*:*:*:*:android:*:*","versionEndExcluding":"5.10.0","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:zoom:meetings:*:*:*:*:*:windows:*:*","versionEndExcluding":"5.10.0","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:zoom:meetings:*:*:*:*:*:iphone_os:*:*","versionEndExcluding":"5.10.0","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2022","CveId":"22785","Ordinal":"225239","Title":"CVE-2022-22785","CVE":"CVE-2022-22785","Year":"2022"},"notes":[{"CveYear":"2022","CveId":"22785","Ordinal":"1","NoteData":"** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.","Type":"Description","Title":null}]}}}