Fiche vulnérabilité
CVE-2024-27244 : faille élevée zoom workplace virtual desktop… (CVSS 7.8)
Description
Insufficient verification of data authenticity in the installer for Zoom Workplace VDI App for Windows may allow an authenticated user to conduct an escalation of privilege via local access.
En bref
- Sévérité
- Élevée (CVSS 7.8)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 15 mai 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- zoom workplace virtual desktop infrastructure