Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-22784
HistoryMay 18, 2022 - 4:15 p.m.

Design/Logic Flaw

2022-05-1816:15:00
PRIOn knowledge base
www.prio-n.com
6

8.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.5%

The Zoom Client for Meetings (for Android, iOS, Linux, MacOS, and Windows) before version 5.10.0 failed to properly parse XML stanzas in XMPP messages. This can allow a malicious user to break out of the current XMPP message context and create a new message context to have the receiving users client perform a variety of actions.This issue could be used in a more sophisticated attack to forge XMPP messages from the server.

8.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.5%