CVE-2022-36928
Description
Zoom for Android clients before version 5.13.0 contain a path traversal vulnerability. A third party app could exploit this vulnerability to read and write to the Zoom application data directory.
- CVSS Version 3.1
nvd
CVE ID: CVE-2022-36928
Base Score: 7.1
Base Severity: HIGH
Vector String:CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Impact Score: 5.2
Exploitability Score: 1.8
zoom
CVE ID: CVE-2022-36928
Base Score: 6.1
Base Severity: MEDIUM
Vector String:CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:N
Impact Score: 4.2
Exploitability Score: 1.8