A newly discovered bug in the Zoom Client for Windows could allow remote code-execution. Researchers at 0patch disclosed the existence of the flaw on Thursday after pioneering a proof-of-concept exploit for it. The vulnerability is present in any currently supported version of Zoom client for Windows, and is unpatched and previously unknown catnip for cybercriminals. No security warning is shown to the user during the course of attack, according to 0patch. No indication of in-the-wild exploits so far.
Source: https://threatpost.com/unpatched-zoom-bug-rce/157317/

