RSS   Vulnerabilities for 'Zulip desktop'   RSS

2021-02-05
 
CVE-2020-10858

CWE-732
 

 
Zulip Desktop before 5.0.0 allows attackers to perform recording via the webcam and microphone due to a missing permission request handler.

 
 
CVE-2020-10857

NVD-CWE-noinfo
 

 
Zulip Desktop before 5.0.0 improperly uses shell.openExternal and shell.openItem with untrusted content, leading to remote code execution.

 

 >>> Vendor: Zulip 3 Products
Zulip
Zulip server
Zulip desktop


Copyright 2024, cxsecurity.com

 

Back to Top