Improper input validation in some Zoom Apps before version 6.2.0 may allow an unauthenticated user to conduct a denial of service via network access.
History

Tue, 19 Aug 2025 14:15:00 +0000

Type Values Removed Values Added
First Time appeared Zoom meeting Software Development Kit
Zoom rooms
Zoom rooms Controller
Zoom video Software Development Kit
Zoom workplace
Zoom workplace Desktop
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:android:*:*
cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:iphone_os:*:*
cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:linux:*:*
cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:macos:*:*
cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:rooms:*:*:*:*:*:ipados:*:*
cpe:2.3:a:zoom:rooms:*:*:*:*:*:macos:*:*
cpe:2.3:a:zoom:rooms:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:rooms_controller:*:*:*:*:*:android:*:*
cpe:2.3:a:zoom:rooms_controller:*:*:*:*:*:linux:*:*
cpe:2.3:a:zoom:rooms_controller:*:*:*:*:*:macos:*:*
cpe:2.3:a:zoom:rooms_controller:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:video_software_development_kit:*:*:*:*:*:android:*:*
cpe:2.3:a:zoom:video_software_development_kit:*:*:*:*:*:iphone_os:*:*
cpe:2.3:a:zoom:video_software_development_kit:*:*:*:*:*:linux:*:*
cpe:2.3:a:zoom:video_software_development_kit:*:*:*:*:*:macos:*:*
cpe:2.3:a:zoom:video_software_development_kit:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:workplace:*:*:*:*:*:android:*:*
cpe:2.3:a:zoom:workplace:*:*:*:*:*:iphone_os:*:*
cpe:2.3:a:zoom:workplace_desktop:*:*:*:*:*:linux:*:*
cpe:2.3:a:zoom:workplace_desktop:*:*:*:*:*:macos:*:*
cpe:2.3:a:zoom:workplace_desktop:*:*:*:*:*:windows:*:*
Vendors & Products Zoom meeting Software Development Kit
Zoom rooms
Zoom rooms Controller
Zoom video Software Development Kit
Zoom workplace
Zoom workplace Desktop

Wed, 20 Nov 2024 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Zoom
Zoom meeting Sdk
Zoom workplace App
CPEs cpe:2.3:a:zoom:meeting_sdk:-:*:*:*:*:*:*:*
cpe:2.3:a:zoom:workplace_app:*:*:*:*:*:*:*:*
Vendors & Products Zoom
Zoom meeting Sdk
Zoom workplace App
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 19 Nov 2024 20:00:00 +0000

Type Values Removed Values Added
Description Improper input validation in some Zoom Apps before version 6.2.0 may allow an unauthenticated user to conduct a denial of service via network access.
Title Zoom Apps - Improper Input Validation
Weaknesses CWE-20
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Zoom

Published: 2024-11-19T19:45:25.914Z

Updated: 2024-11-20T15:42:40.830Z

Reserved: 2024-08-28T21:50:25.332Z

Link: CVE-2024-45422

cve-icon Vulnrichment

Updated: 2024-11-20T15:40:27.563Z

cve-icon NVD

Status : Analyzed

Published: 2024-11-19T20:15:31.430

Modified: 2025-08-19T14:08:46.097

Link: CVE-2024-45422

cve-icon Redhat

No data.