CVE-2023-36541

HIGH

Zoom Desktop Client for Windows <5.14.5 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Insufficient verification of data authenticity in Zoom Desktop Client for Windows before 5.14.5 may allow an authenticated user to enable an escalation of privilege via network access.

Scores

CVSS v3 8.0
EPSS 0.0030
EPSS Percentile 53.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-345
Status published
Products (1)
zoom/zoom < 5.14.5
Published Aug 08, 2023
Tracked Since Feb 18, 2026