7.8
CVE-2026-53406
- EPSS 0.08%
- Veröffentlicht 12.06.2026 17:52:45
- Zuletzt bearbeitet 29.06.2026 13:51:01
- CVE-Watchlists
- Unerledigt
Insufficient Verification of Data Authenticity in Remote Control for Zoom Contact Center for Windows before version 7.0.0 may allow an authenticated user to enable an escalation of privilege via local access.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zoom ≫ Remote Control SwPlatformwindows Version < 7.0.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.08% | 0.003 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| security@zoom.us | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-345 Insufficient Verification of Data Authenticity
The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.
https://www.zoom.com/en/trust/security-bulletin/zsb-26009