← Back

CVE-2026-30903

nvd nist
Published: Mar 11, 2026Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

External Control of File Name or Path in the Mail feature of Zoom Workplace for Windows before 6.6.0 may allow an unauthenticated user to conduct an escalation of privilege via network access.

Affected (4)

2 products
Workplace Desktop
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Before 6.6.0
Zoom
From 6.4.0 to 6.4.17
From 6.5.0 to 6.5.15
From 6.6.0 to 6.6.10

References (1)

Source: security@zoom.us
Vendor Advisory

Timeline

No history available yet.