QID 376868
Date Published: 2022-08-29
QID 376868: Zoom Client for Meetings Local Privilege Escalation Vulnerability (ZSB-22018)
The Zoom Client for Meetings for macOS a local low-privileged user could exploit this vulnerability to escalate their privileges to root.
Affected Versions:
Version 5.7.3 and before 5.11.5
QID Detection Logic(Authenticated):
It checks for vulnerable version of Zoom Client for Meetings for macOS target
On successful exploitation it could allow an attacker to escalate their privileges to root.
Solution
Upgrade to the latest packages which contain a patch. Refer to CVE-2022-28756 to address this issue and obtain more info.
Vendor References
CVEs related to QID 376868
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2022-28756 |
|