VendorsZoomroomsany version
Vulnerabilities

Zoom Rooms any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

108CVEs
CVE-2024-24691
Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows - Improper Input Validation
Published 2024-02-14 · Modified
9.8EPSS 0.017
CVE-2025-49457
Zoom Clients for Windows - Untrusted Search Path
Published 2025-08-12 · Analyzed
9.6EPSS 0.006
CVE-2022-22786
Update package downgrade in Zoom Client for Meetings for Windows
Published 2022-05-18 · Modified
8.8EPSS 0.015
CVE-2023-34121
Improper input validation in the Zoom for Windows, Zoom Rooms, Zoom VDI Windows Meeting clients before 5.14.0 may allow an authenticated user to potentially enable an escalation of privilege via network access.
Published 2023-06-13 · Modified
8.8EPSS 0.010
CVE-2023-43582
Improper authorization in some Zoom clients may allow an authorized user to conduct an escalation of privilege via network access.
Published 2023-11-14 · Modified
8.8EPSS 0.007
CVE-2024-45421
Zoom Apps - Buffer Overflow
Published 2025-02-25 · Analyzed
8.8EPSS 0.006
CVE-2024-45418
Zoom Apps for macOS - Symbolic Link Following
Published 2025-02-25 · Analyzed
8.8EPSS 0.005
CVE-2022-36930
Local Privilege Escalation in Zoom Rooms for Windows Installers
Published 2023-01-09 · Modified
8.8EPSS 0.005
CVE-2025-27440
Zoom Apps - Heap-based Buffer Overflow
Published 2025-03-11 · Analyzed
8.8EPSS 0.004
CVE-2025-27439
Zoom Apps - Buffer Underflow
Published 2025-03-11 · Analyzed
8.8EPSS 0.004
CVE-2025-0151
Zoom Apps - Use After Free
Published 2025-03-11 · Analyzed
8.8EPSS 0.004
CVE-2022-36926
Local Privilege Escalation in Zoom Rooms for macOS Clients
Published 2023-01-09 · Modified
8.8EPSS 0.004
CVE-2022-36924
Local Privilege Escalation in Zoom Rooms Installer for Windows
Published 2022-11-17 · Modified
8.8EPSS 0.003
CVE-2023-39211
Improper privilege management in Zoom Desktop Client for Windows and Zoom Rooms for Windows before 5.15.5 may allow an authenticated user to enable an information disclosure via local access.
Published 2023-08-08 · Modified
8.8EPSS 0.002
CVE-2022-36927
Local Privilege Escalation in Zoom Rooms for macOS Clients
Published 2023-01-09 · Modified
8.8EPSS 0.002
CVE-2022-28752
Local Privilege Escalation in the Zoom Rooms for Windows Client
Published 2022-08-17 · Modified
8.8EPSS 0.001
CVE-2025-30663
Zoom Workplace Apps - Time-of-check Time-of-use
Published 2025-05-14 · Analyzed
8.8EPSS 0.001
CVE-2024-39825
Zoom Workplace Apps and Rooms Clients - Buffer Overflow
Published 2024-08-14 · Analyzed
8.5EPSS 0.006
CVE-2023-36538
Improper access control in Zoom Rooms for Windows before version 5.15.0 may allow an authenticated user to enable an escalation of privilege via local access.
Published 2023-07-11 · Modified
8.4EPSS 0.002
CVE-2023-28597
Improper trust boundary implementation for SMB in Zoom Clients
Published 2023-03-27 · Modified
8.3EPSS 0.005
CVE-2025-30664
Zoom Workplace Apps - Cross-site Scripting
Published 2025-05-14 · Analyzed
8.2EPSS 0.003
CVE-2023-36536
Untrusted search path in the installer for Zoom Rooms for Windows before version 5.15.0 may allow an authenticated user to enable an escalation of privilege via local access.
Published 2023-07-11 · Modified
8.2EPSS 0.002
CVE-2023-34119
Insecure temporary file in the installer for Zoom Rooms for Windows before version 5.15.0 may allow an authenticated user to enable an escalation of privilege via local access.
Published 2023-07-11 · Modified
8.2EPSS 0.002
CVE-2023-39214
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access.
Published 2023-08-08 · Modified
8.1EPSS 0.010
CVE-2024-45419
Zoom Apps - Improper Input Validation
Published 2024-11-19 · Analyzed
8.1EPSS 0.005
CVE-2023-39212
Untrusted search path in Zoom Rooms for Windows before version 5.15.5 may allow an authenticated user to enable a denial of service via local access.
Published 2023-08-08 · Modified
7.9EPSS 0.002
CVE-2022-22788
DLL injection in Zoom Opener installer for Zoom and Zoom Rooms clients
Published 2022-06-15 · Modified
7.8EPSS 0.015
CVE-2022-36929
Local Privilege Escalation in Zoom Rooms for Windows Clients
Published 2023-01-09 · Modified
7.8EPSS 0.003
CVE-2024-24697
Zoom Clients - Untrusted Search Path
Published 2024-02-13 · Modified
7.8EPSS 0.003
CVE-2023-43590
Link following in Zoom Rooms for macOS before version 5.16.0 may allow an authenticated user to conduct an escalation of privilege via local access.
Published 2023-11-14 · Modified
7.8EPSS 0.002
CVE-2025-0145
Zoom Workplace Apps for Windows - Untrusted Search Path
Published 2025-01-30 · Analyzed
7.8EPSS 0.002
CVE-2021-34411
During the installation process forZoom Rooms for Conference Room for Windows before version 5.3.0 it is possible to launch Internet Explorer with elevated privileges. If the installer was launched with elevated privileges such as by SCCM this can result in a local privilege escalation.
Published 2021-09-27 · Modified
7.8EPSS 0.002
CVE-2021-34409
Zoom Client Installer Local Privilege Escalation
Published 2021-09-27 · Modified
7.8EPSS 0.002
CVE-2023-34118
Improper privilege management in Zoom Rooms for Windows before version 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.
Published 2023-07-11 · Modified
7.8EPSS 0.002
CVE-2024-27240
Zoom Apps for Windows - Improper Input Validation
Published 2024-07-15 · Analyzed
7.8EPSS 0.002
CVE-2023-43591
Improper privilege management in Zoom Rooms for macOS before version 5.16.0 may allow an authenticated user to conduct an escalation of privilege via local access.
Published 2023-11-14 · Modified
7.8EPSS 0.002
CVE-2026-53409
Improper Privilege Management in Zoom Rooms for Windows before version 7.1.0 may allow an authenticated user to conduct an escalation of privilege via local access.
Published 2026-07-16 · Analyzed
7.8EPSS 0.002
CVE-2026-30906
Untrusted search path in the installer for Zoom Rooms for Windows before version 7.0.0 may allow an authenticated user to enable an escalation of privilege via local access.
Published 2026-05-13 · Analyzed
7.8EPSS 0.002
CVE-2025-67460
Zoom Rooms for Windows - Software Downgrade Protection Mechanism Failure
Published 2025-12-10 · Analyzed
7.8EPSS 0.002
CVE-2026-30901
Zoom Rooms for Windows - Improper Input Validation
Published 2026-03-11 · Analyzed
7.8EPSS 0.001
1 / 3Next →