ZeroHour

CVE-2026-30903

CVSS 3.1
9.8 critical
EPSS
<1%p26
Published
()
Modified
Description

External Control of File Name or Path in the Mail feature of Zoom Workplace for Windows before 6.6.0 may allow an unauthenticated user to conduct an escalation of privilege via network access.

Vendors
zoom
Products
workplace desktop, workplace virtual desktop infrastructure
Weakness
CWE-73, CWE-610
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.