← Back to CVE search

CVE-2026-30905

Zoom Workplace VDI Plugin

Description

External Control of File Name or Path in the Zoom Workplace VDI Plugin Windows Universal Installer before version 6.6.11 may allow an authenticated user to conduct an escalation of privilege via local access.

CVSS 7.8EPSS 0.11800000000000001%Risk 0.79
View source
Published
2026-05-13 19:17:05
Affected versions
<6.6.11
Type
Package
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Operating systems
Windows