Critical severity9.6NVD Advisory· Published Aug 12, 2025· Updated Jun 17, 2026
CVE-2025-49457
CVE-2025-49457
Description
Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:windows:*:*Range: <6.3.10
- cpe:2.3:a:zoom:rooms_controller:*:*:*:*:*:windows:*:*Range: <6.3.10
- cpe:2.3:a:zoom:workplace_desktop:*:*:*:*:*:windows:*:*Range: <6.3.10
- cpe:2.3:a:zoom:workplace_virtual_desktop_infrastructure:*:*:*:*:*:windows:*:*Range: <6.1.16
- Range: see references
Patches
Vulnerability mechanics
References
1- www.zoom.com/en/trust/security-bulletin/zsb-25030nvdVendor Advisory
News mentions
0No linked articles in our index yet.