Gabriel Quadros

2 exploits Active since Dec 2017
CVE-2017-15049 EXPLOITDB HIGH text WORKING POC
Zoom < 2.0.115900.1201 - OS Command Injection
The ZoomLauncher binary in the Zoom client for Linux before 2.0.115900.1201 does not properly sanitize user input when constructing a shell command, which allows remote attackers to execute arbitrary code by leveraging the zoommtg:// scheme handler.
CVSS 8.8
CVE-2017-15048 EXPLOITDB HIGH text WRITEUP
Zoom < 2.0.115900.1201 - Memory Corruption
Stack-based buffer overflow in the ZoomLauncher binary in the Zoom client for Linux before 2.0.115900.1201 allows remote attackers to execute arbitrary code by leveraging the zoommtg:// scheme handler.
CVSS 8.8