ZeroHour

CVE-2026-53408

CVSS 3.1
8.1 high
EPSS
<1%p11
Published
()
Modified
Description

Improper Authorization in Handler for Custom URL Scheme in Zoom Workplace before version 7.0.4 for Android and before 7.0.3 for iOS may allow an unauthenticated user to conduct an escalation of privilege via network access.

Vendors
zoom
Products
meeting software development kit, workplace
Weakness
CWE-939
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.