Vulnerability · NVD
CVE-2023-43585
CVE-2023-43585, high severity (CVSS 7.1): 1 tracked app concerned, all fixed or indeterminable on their current version.
- Severity (CVSS)
- 7.1
- Exploitation
- 0.6 %
- Tracked apps
- 1
- Still exposed
- 0
NVD scale
EPSS, predicted over 30 days
Improper access control in Zoom Mobile App for iOS and Zoom SDKs for iOS before version 5.16.5 may allow an authenticated user to conduct a disclosure of information via network access.
Attack vector : Network
No user interaction
Show raw CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L
EPSS
0.60%
exploit very unlikely
percentile 46.3%
Tracked apps referencing this CVE
For each app: the affected range, the fixing version, and where the tracked app stands today.
Vulnerable CPE configurations (4)
| Vendor | Product | Platform | Versions | CPE 2.3 URI |
|---|---|---|---|---|
| zoom |
meeting_software_development_kit Android
|
Android | <5.16.0 | cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:android:*:* |
| zoom |
meeting_software_development_kit iOS
|
iOS | <5.16.5 | cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:iphone_os:*:* |
| zoom |
video_software_development_kit iOS
|
iOS | <5.16.5 | cpe:2.3:a:zoom:video_software_development_kit:*:*:*:*:*:iphone_os:*:* |
| zoom |
zoom iOS
|
iOS | <5.16.5 | cpe:2.3:a:zoom:zoom:*:*:*:*:*:iphone_os:*:* |
Manage your fleet with Appaloosa
Appaloosa pushes OS updates, apps and policies to your Windows, macOS, iOS and Android devices from one console.