CVE-2024-24698

CVSS v3 Score
4.4
Medium

Vulnerability Description

Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via local access.

CVSS:5.4(Medium)

The UI performs the wrong action in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network.

CVSS:6.5(Medium)

Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access.