Known vulnerabilities in Virtual Desktop Infrastructure (VDI) 5.17.10 24730
Vendor:
Zoom Video Communications, Inc.
Software:
Virtual Desktop Infrastructure (VDI)
Version:
5.17.10 24730
Software CPE:
cpe:2.3:a:zoom_video_communications:vdi:*:*:*:*:*:*:*:*
Website:
https://zoom.us/
Total vulnerabilities:
17
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Vulnerabilities by Severity
7.0.11.27050
6.6.16.27040
6.6.15.27010
6.5.18.26990
7.0.10.26980
6.6.14.26970
6.5.17.26960
6.6.13.26950
6.5.16.26940
6.6.12.26920
6.5.15.26910
6.4.17.26900
6.6.11.26890
6.5.14.26880
6.4.16.26870
6.6.10.26830
6.5.13.26820
6.4.15.26810
6.4.14.26620
6.5.12.26790
6.4.14.26780
6.5.11.26770
6.4.13.26760
6.3.15.26750
6.5.10.26710
6.4.12.26620
6.3.14.26600
6.1.7
6.4.11.26350
6.3.13.26340
6.2.16.26330
6.4.10.26150
6.3.12.26120
6.2.15.26110
6.3.11.26010
6.2.14.26000
6.1.18.25990
6.3.10.25910
6.2.13.25860
6.1.17.25840
5.16.5
6.2.12.25780
6.2.11.25670
6.2.10.25600
6.1.16.25750
6.1.15.25650
5.15.17.24820
6.1.14.25530
6.1.13.25490
6.1.12.25370
6.1.10.25260
6.0.16.25510
6.0.15.25480
6.0.14.25360
6.0.12.25240
6.0.11.25150
6.0.10.25100
5.17.15.25220
5.17.14.25140
5.17.13.25060
5.17.12.24920
5.17.11.24850
5.17.10.24730
5.17.6.24660
5.17.5.24630
5.16.16.24960
5.16.15.24830
5.16.14.24650
5.16.13.24615
5.16.12.24610
5.16.11.24500
5.16.10.24420
5.16.0.24280
5.15.16.24595
5.15.15.24590
5.15.14.24490
5.15.13.24442
5.15.12.24440
5.15.11.24220
5.15.10.24130
5.15.5.24110
5.15.4.23940
5.15.3.23820
5.15.2.23760
5.14.16.24585
5.14.15.24580
5.14.14.24430
5.14.13.24200
5.14.12.23930
5.14.11.23790
5.14.10.23670
5.14.0.23370
5.13.12.23740
5.13.11.23390
5.13.10.23090
5.13.1.22610
5.13.0.22460
5.12.7.22370
5.12.6.22200
5.12.3.22070
5.12.2.21960
5.12.1.21950
5.12.0.21940
5.11.11.21790
5.11.9.21750
5.11.2.21530
5.11.0.21410
5.10.6.21295
5.10.0.21068
5.9.6.20931
5.9.2.20762
5.9.1.20742
5.8.5.21118
5.17.15
6.0.12
6.1.0
6.0.11
6.0.10
5.17.14
5.17.13
5.16.16 24960
5.17.12 24920
5.17.11 24850
5.17.10 24730
5.17.6 24660
5.17.5 24630
5.16.14 24650
5.16.13 24615
5.16.12 24610
5.16.11 24500
5.15.16 24595
5.15.15 24590
5.15.14 24490
5.15.13 24442
5.15.12 24440
5.14.16 24585
5.14.15 24580
5.14.13 24200
5.14.12 23930
5.14.11 23790
5.13.12 23740
5.13.11 23390
5.13.10 23090
5.13.1 22610
5.13.0 22460
5.12.7 22370
5.12.6 22200
5.12.3 22070
5.12.2 21960
5.12.1 21950
5.12.0 21940
5.11.11 21790
5.11.9 21750
5.11.2 21530
5.11.0 21410
5.10.7 21358
5.10.6 21295
5.10.2 21113
5.10.0 21068
5.9.6 20931
5.9.2 20762
5.9.1 20742
5.8.5 21118
5.8.4
5.8.0
5.7.8
5.7.6
5.7.5
5.7.2
5.7.0
5.15.12
5.14.14 24430
5.16.10 24420
5.16.0 24280
5.15.11 24220
5.15.10 24130
5.15.5 24110
5.15.4 23940
5.15.3 23820
5.15.5
5.15.2 23760
5.14.10 23670
5.14.0 23370
5.13.11
5.13.10
5.13.1
5.13.0
5.12.7
5.12.6
5.12.3
5.12.2
5.12.1
5.12.0
5.11.11
5.11.9
5.11.2
5.11.0
5.10.7.21358
5.10.6
5.10.2.21113
5.10.0
5.9.6
5.9.2
5.9.1
5.8.5
5.4.59208.1207
5.4.0
5.2.37291.0809
5.2.2
5.2.0
5.0.1
4.6.10
4.4
3.3.1
3.3.0
3.2.0
3.1.2
3.1.1
3.1.0
3.0.4
3.0.3
3.0.2
3.0.1
3.0
2.1.5
2.1.4
2.1.3
2.1.1
2.1.0
2.0.3
2.0.2
2.0.1
2.0
Vulnerabilities (17)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU105756 - Exposure of sensitive information to an unauthorized actor CVE-2024-39824 |
CWE-200 | Low | 5.17.14, 6.0.11 | 17.03.2025 |
SB2025031715 |
||
| #VU105757 - Exposure of sensitive information to an unauthorized actor CVE-2024-42434 |
CWE-200 | Low | 5.17.14, 6.0.11 | 17.03.2025 |
SB2025031715 |
||
| #VU105758 - Exposure of sensitive information to an unauthorized actor CVE-2024-42435 |
CWE-200 | Low | 5.17.14, 6.0.11 | 17.03.2025 |
SB2025031715 |
||
| #VU105755 - Exposure of sensitive information to an unauthorized actor CVE-2024-39823 |
CWE-200 | Low | 5.17.14, 6.0.11 | 17.03.2025 |
SB2025031715 |
||
| #VU105753 - Protection Mechanism Failure CVE-2024-39818 |
CWE-693 | Medium | 5.17.13 | 17.03.2025 |
SB2025031713 |
||
| #VU98150 - Incorrect Ownership Assignment CVE-2024-45426 |
CWE-708 | Low | 6.1.0 | 08.10.2024 |
SB2024100851 |
||
| #VU98149 - Incorrect User Management CVE-2024-45425 |
CWE-286 | Low | 6.1.0 | 08.10.2024 |
SB2024100851 |
||
| #VU95867 - Memory corruption CVE-2024-39825 |
CWE-119 | High | 5.17.13 | 13.08.2024 |
SB2024081396 |
||
| #VU95826 - Memory corruption CVE-2024-42436 |
CWE-119 | Medium | 5.17.14, 6.0.11 | 13.08.2024 |
SB2024081354 |
||
| #VU95827 - Memory corruption CVE-2024-42437 |
CWE-119 | Medium | 5.17.14, 6.0.11 | 13.08.2024 |
SB2024081354 |
||
| #VU95828 - Memory corruption CVE-2024-42438 |
CWE-119 | Medium | 5.17.14, 6.0.11 | 13.08.2024 |
SB2024081354 |
||
| #VU93888 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2024-39826 |
CWE-22 | Low | 5.17.13 | 09.07.2024 |
SB2024070949 SB2025031710 |
||
| #VU93886 - Improper input validation CVE-2024-27241 |
CWE-20 | Low | 5.17.13 | 09.07.2024 |
SB2024070949 SB2025031708 |
||
| #VU93885 - Improper input validation CVE-2024-27240 |
CWE-20 | High | 5.17.13 | 09.07.2024 |
SB2024070949 SB2025031707 |
||
| #VU91692 - Divide By Zero CVE-2024-27239 |
CWE-369 | Low | 5.15.17.24820, 5.16.15.24830, 5.17.11 24850 | 11.06.2024 |
SB20240611218 SB2025031706 |
||
| #VU91691 - Use After Free CVE-2024-27246 |
CWE-416 | Low | 5.15.17.24820, 5.16.15.24830, 5.17.11 24850 | 11.06.2024 |
SB20240611218 SB2025031705 |
||
| #VU91690 - Memory corruption CVE-2024-27245 |
CWE-119 | Low | 5.15.17.24820, 5.16.15.24830, 5.17.11 24850 | 11.06.2024 |
SB20240611218 SB2025031704 |