# CVE-2023-43588

## Summary

- **CVE ID:** CVE-2023-43588
- **Severity:** LOW
- **CVSS Score:** 3.5 (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N)
- **CWE:** CWE-449
- **Published:** Nov 14, 2023
- **Last Modified:** Mar 13, 2026

## Description

Insufficient control flow management in some Zoom clients may allow an authenticated user to conduct an information disclosure via network access.

## Affected Products

- Zoom Video Communications, Inc. — Zoom Clients (see references)

## References

- [CNA](https://explore.zoom.us/en/trust/security/security-bulletin/)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.27%
- **EPSS Percentile:** 50.0

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._