CVE-2024-42439
MEDIUMDescription
Untrusted search path in the installer for Zoom Workplace Desktop App for macOS and Zoom Meeting SDK for macOS before 6.1.0 may allow a privileged user to conduct an escalation of privilege via local access.
Is your site exposed to CVE-2024-42439?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| zoom | meeting_software_development_kit |
| zoom | workplace_desktop |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-42439? +
How severe is CVE-2024-42439? +
What products are affected by CVE-2024-42439? +
How do I check if I'm vulnerable to CVE-2024-42439? +
Related Vulnerabilities
Ghostscript for Windows is vulnerable to local privilege escalation through PostScript resource file hijacking. Due to the application searching for …
Multiple local privilege escalation vulnerabilities in the Palo Alto Networks GlobalProtect™ app allows a local user to escalate their privileges …
In Google fuse-archive versions prior to 1.24, an attacker who can prepend a directory to PATH or write a malicious …
An incorrect privilege assignment vulnerability in the Palo Alto Networks GlobalProtect™ App on enables a locally authenticated non administrative user …
Potential privilege escalation issue in Revenera InstallShield version 2023 R1 running a renamed Setup.exe on Windows. When a local administrator …
OpenVPN version 2.5.0 through 2.6.22 and 2.7_alpha1 through 2.7.6 on Windows allows local authenticated users to perform a binary planting …