Reliance on Untrusted Inputs in a Security Decision in Zoom Workplace Desktop App for Windows - #VU26523

 

Reliance on Untrusted Inputs in a Security Decision in Zoom Workplace Desktop App for Windows - #VU26523

Published: April 1, 2020 / Updated: April 21, 2020


Vulnerability identifier: #VU26523
CSH Severity: Medium
CVSS v4: 6.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-807
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to gain access to sensitive information.

The vulnerability exists due to Zoom client for Windows automatically processes comments in chat and converts URLs with UNC path into links. A remote attacker can trick the victim into following this link and gain access to NTLM credentials, sent by the victim's system.


Affected software

Zoom Workplace Desktop App for Windows

Remediation

Install update from vendor's website.

Zoom Workplace Desktop App for Windows - update to 4.6.9 19253.0401

External References

Related Security Bulletins