Workplace Clients
by Zoom Video Communications, Inc.
CVEs (5)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-49458 | Med | 0.42 | 6.5 | 0.00 | Sep 9, 2025 | Buffer overflow in certain Zoom Workplace Clients may allow an authenticated user to conduct a denial of service via network access. | ||
| CVE-2025-58135 | Med | 0.34 | 5.3 | 0.00 | Sep 9, 2025 | Improper action enforcement in certain Zoom Workplace Clients for Windows may allow an unauthenticated user to conduct a disclosure of information via network access. | ||
| CVE-2025-30669 | Med | 0.31 | 4.8 | 0.00 | Nov 13, 2025 | Improper certificate validation in certain Zoom Clients may allow an unauthenticated user to conduct a disclosure of information via adjacent access. | ||
| CVE-2025-49461 | Med | 0.28 | 4.3 | 0.00 | Sep 9, 2025 | Cross-site scripting in certain Zoom Workplace Clients may allow an unauthenticated user to conduct a denial of service via network access. | ||
| CVE-2025-49460 | Med | 0.28 | 4.3 | 0.00 | Sep 9, 2025 | Uncontrolled resource consumption in certain Zoom Workplace Clients may allow an unauthenticated user to conduct a denial of service via network access. |
- risk 0.42cvss 6.5epss 0.00
Buffer overflow in certain Zoom Workplace Clients may allow an authenticated user to conduct a denial of service via network access.
- risk 0.34cvss 5.3epss 0.00
Improper action enforcement in certain Zoom Workplace Clients for Windows may allow an unauthenticated user to conduct a disclosure of information via network access.
- risk 0.31cvss 4.8epss 0.00
Improper certificate validation in certain Zoom Clients may allow an unauthenticated user to conduct a disclosure of information via adjacent access.
- risk 0.28cvss 4.3epss 0.00
Cross-site scripting in certain Zoom Workplace Clients may allow an unauthenticated user to conduct a denial of service via network access.
- risk 0.28cvss 4.3epss 0.00
Uncontrolled resource consumption in certain Zoom Workplace Clients may allow an unauthenticated user to conduct a denial of service via network access.