漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
The Zoom Client for Meetings for Windows in all versions before version 5.3.2 writes log files to a user writable directory as a privileged user during the installation or update of the client. This could allow for potential privilege escalation if a link was created between the user writable directory used and a non-user writable directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ZOOM Zoom Client 后置链接漏洞
Vulnerability Description
ZOOM Zoom Client是美国Zoom(ZOOM)公司的一款支持多种平台的视频会议客户端应用程序。 Zoom Client for Meetings for Windows 存在安全漏洞,该漏洞源于5.3.2版本之前的所有版本的Zoom for Meetings for Windows客户端在安装或更新客户端时,会以特权用户的身份将日志文件写入用户可写目录。攻击者可利用该漏洞导致特权升级。
CVSS Information
N/A
Vulnerability Type
N/A