Zoom Call Recording 6.3.1 from Eleveo is vulnerable to Java Deserialization attacks targeting the inbuilt RMI service. A remote unauthenticated attacker can exploit this vulnerability by sending crafted RMI requests to execute arbitrary code on the target host.
Software | From | Fixed in |
---|---|---|
eleveo / call_recording | 6.3.1 | 6.3.1.x |