Zoom Products Multiple Vulnerabilities
Release Date: 12 Nov 2025
RISK: Medium Risk
TYPE: Clients - Productivity Products
Multiple vulnerabilities were identified in Zoom Products. A remote attacker could exploit some of these vulnerabilities to trigger elevation of privilege, sensitive information disclosure and cross-site scripting on the targeted system.
Impact
- Elevation of Privilege
- Information Disclosure
- Cross-Site Scripting
System / Technologies affected
- Zoom Meeting SDK for Android before version 6.5.10
- Zoom Meeting SDK for iOS before version 6.5.10
- Zoom Meeting SDK for Linux before version 6.5.10
- Zoom Meeting SDK for macOS before version 6.5.10
- Zoom Meeting SDK for Windows before version 6.5.10
- Zoom Rooms Controller for Linux before version 6.5.10
- Zoom Rooms Controller for macOS before version 6.5.10
- Zoom Rooms Controller for Windows before version 6.5.10
- Zoom Rooms for iOS before version 6.5.10
- Zoom Rooms for macOS before version 6.5.10
- Zoom Rooms for Windows before version 6.5.10
- Zoom Workplace for Android before version 6.5.10
- Zoom Workplace for iOS before version 6.5.10
- Zoom Workplace for Linux before version 6.5.10
- Zoom Workplace for macOS before version 6.5.10
- Zoom Workplace for Windows before version 6.5.10
- Zoom Workplace Meeting SDK for macOS before version 6.5.10
- Zoom Workplace VDI Client for Windows before versions 6.3.14, 6.4.12 and 6.5.10
- Zoom Workplace VDI Plugin macOS Universal installer before version 6.3.14, 6.4.14, and 6.5.10
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- https://www.zoom.com/en/trust/security-bulletin/zsb-25040/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25041/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25042/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25043/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25044/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25045/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25046/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25047/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25048/
Vulnerability Identifier
- CVE-2025-30662
- CVE-2025-30669
- CVE-2025-62482
- CVE-2025-62483
- CVE-2025-62484
- CVE-2025-64738
- CVE-2025-64739
- CVE-2025-64740
- CVE-2025-64741
Source
Related Link
- https://www.zoom.com/en/trust/security-bulletin/zsb-25040/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25041/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25042/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25043/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25044/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25045/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25046/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25047/
- https://www.zoom.com/en/trust/security-bulletin/zsb-25048/
沒有留言:
發佈留言