CVE Number | Vulnerability | Product | Severity | Date |
---|---|---|---|---|
CVE-2022-22788 | Zoom client for windows Vulnerability | Zoom | Critical | 19-07-2022 |
Technical Information
Zoom has an option to install Zoom client on the machine when trying to join a meeting if the client is not already present on the machine. This is done by installing Zoom Opener installer. This installer is vulnerable to DLL injection that on successful exploitation could lead to Arbitrary code injection on the remote machine.
For more information refer – Zoom Advisory