ZeroHour

CVE-2026-53407

CVSS 3.1
9.8 critical
EPSS
<1%p14
Published
()
Modified
Description

Improper Authorization in Handler for Custom URL Scheme in Zoom Workplace before version 7.0.4 for Android and before 7.0.3 for iOS may allow an unauthenticated user to conduct an escalation of privilege via network access.

Vendors
zoom
Products
workplace
Weakness
CWE-939
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.