3.3
CVSSv3

CVE-2022-28764

Published: 14/11/2022 Updated: 17/11/2022
CVSS v3 Base Score: 3.3 | Impact Score: 1.4 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

The Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5.12.6 is susceptible to a local information exposure vulnerability. A failure to clear data from a local SQL database after a meeting ends and the usage of an insufficiently secure per-device key encrypting that database results in a local malicious user being able to obtain meeting information such as in-meeting chat for the previous meeting attended from that local user account.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zoom vdi windows meeting clients

zoom rooms

zoom meetings