CVE-2025-0145

Untrusted search path in the installer for some Zoom Workplace Apps for Windows may allow an authorized user to conduct an escalation of privilege via local access.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:rooms:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:rooms_controller:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:video_software_development_kit:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:workplace_desktop:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:workplace_virtual_desktop_infrastructure:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:workplace_virtual_desktop_infrastructure:*:*:*:*:*:windows:*:*

History

No history.

Information

Published : 2025-01-30 20:15

Updated : 2025-08-20 12:38


NVD link : CVE-2025-0145

Mitre link : CVE-2025-0145

CVE.ORG link : CVE-2025-0145


JSON object : View

Products Affected

zoom

  • workplace_desktop
  • workplace_virtual_desktop_infrastructure
  • meeting_software_development_kit
  • video_software_development_kit
  • rooms_controller
  • rooms
CWE
CWE-426

Untrusted Search Path