Show plain JSON{"id": "CVE-2023-39199", "cveTags": [], "metrics": {"cvssMetricV31": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 6.5, "attackVector": "NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "LOW", "confidentialityImpact": "HIGH"}, "impactScore": 3.6, "exploitabilityScore": 2.8}, {"type": "Secondary", "source": "security@zoom.us", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 4.9, "attackVector": "NETWORK", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "HIGH", "confidentialityImpact": "HIGH"}, "impactScore": 3.6, "exploitabilityScore": 1.2}]}, "published": "2023-11-14T23:15:08.090", "references": [{"url": "https://explore.zoom.us/en/trust/security/security-bulletin/", "tags": ["Vendor Advisory"], "source": "security@zoom.us"}], "vulnStatus": "Analyzed", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-Other"}]}, {"type": "Secondary", "source": "security@zoom.us", "description": [{"lang": "en", "value": "CWE-310"}]}], "descriptions": [{"lang": "en", "value": "Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access."}, {"lang": "es", "value": "Los problemas criptogr\u00e1ficos con el chat durante la reuni\u00f3n para algunos clientes de Zoom pueden permitir que un usuario privilegiado realice una divulgaci\u00f3n de informaci\u00f3n a trav\u00e9s del acceso a la red."}], "lastModified": "2023-11-21T00:57:16.017", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:zoom:meetings:*:*:*:*:*:android:*:*", "vulnerable": true, "matchCriteriaId": "249D7C05-850F-4BED-BE1B-864B3A555DC5", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:meetings:*:*:*:*:*:iphone_os:*:*", "vulnerable": true, "matchCriteriaId": "CF877945-AEBB-4347-B45C-DC5CF711EAC0", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:meetings:*:*:*:*:*:linux:*:*", "vulnerable": true, "matchCriteriaId": "E7C90882-B6EB-476E-B8C8-9CA9D2C86328", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:meetings:*:*:*:*:*:macos:*:*", "vulnerable": true, "matchCriteriaId": "C00191F0-BCF9-4200-8953-B1DD1E0DBA3F", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:meetings:*:*:*:*:*:windows:*:*", "vulnerable": true, "matchCriteriaId": "E80CFF3B-0BF6-4EF4-878B-B037B5DF1BC5", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:rooms:*:*:*:*:*:android:*:*", "vulnerable": true, "matchCriteriaId": "12D81D70-FA29-4921-9A20-BE8DC596F6AE", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:rooms:*:*:*:*:*:ipad_os:*:*", "vulnerable": true, "matchCriteriaId": "141007D5-4A8B-48C3-8BFB-EAF8BC3EF905", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:rooms:*:*:*:*:*:macos:*:*", "vulnerable": true, "matchCriteriaId": "3D39B6BA-D4BC-4502-8867-D5A5441D3196", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:rooms:*:*:*:*:*:windows:*:*", "vulnerable": true, "matchCriteriaId": "62689640-F0DA-4FBA-83A9-AA29843B6E57", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:virtual_desktop_infrastructure:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4D26E2D3-9148-44AA-8AF0-A3E58704F532", "versionEndExcluding": "5.14.13"}, {"criteria": "cpe:2.3:a:zoom:virtual_desktop_infrastructure:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C3B28CE5-ABB5-43C4-8BB4-133050E0821E", "versionEndExcluding": "5.15.11", "versionStartIncluding": "5.15.0"}, {"criteria": "cpe:2.3:a:zoom:zoom:*:*:*:*:*:android:*:*", "vulnerable": true, "matchCriteriaId": "A454D523-527C-4910-8474-EB4CDFFE7BF6", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:zoom:*:*:*:*:*:iphone_os:*:*", "vulnerable": true, "matchCriteriaId": "BE96C026-8B39-4509-BA4F-AC224918DC8F", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:zoom:*:*:*:*:*:linux:*:*", "vulnerable": true, "matchCriteriaId": "7EB1DC6F-6270-40C4-804F-7EEC18A62FE8", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:zoom:*:*:*:*:*:macos:*:*", "vulnerable": true, "matchCriteriaId": "E055EB88-5A25-4348-AAEA-5A25496E5E64", "versionEndExcluding": "5.16.0"}, {"criteria": "cpe:2.3:a:zoom:zoom:*:*:*:*:*:windows:*:*", "vulnerable": true, "matchCriteriaId": "1BF6E442-FE5C-46AF-AE37-4D5A9AB56A3D", "versionEndExcluding": "5.16.0"}], "operator": "OR"}]}], "sourceIdentifier": "security@zoom.us"}