CVE-2024-45424

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Feb 25, 2025
Updated: Mar 5, 2025
CWE ID 840

Summary

CVE-2024-45424 is a newly disclosed business logic error affecting certain Zoom Workplace Apps. This vulnerability permits unauthenticated users to obtain sensitive information through network access. By exploiting this issue, attackers can conduct information disclosure without proper authorization. This error poses a potential risk to data privacy and security within the affected Zoom applications. Organizations using these apps are advised to apply the necessary patches as soon as they become available to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share