Untrusted search path in the installer for some Zoom Workplace Apps for Windows may allow an authorized user to conduct an escalation of privilege via local access.
History

Thu, 30 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 30 Jan 2025 20:00:00 +0000

Type Values Removed Values Added
Description Untrusted search path in the installer for some Zoom Workplace Apps for Windows may allow an authorized user to conduct an escalation of privilege via local access.
Title Zoom Workplace Apps for Windows - Untrusted Search Path
Weaknesses CWE-426
References
Metrics cvssV3_1

{'score': 4.6, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:L/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Zoom

Published: 2025-01-30T19:45:39.432Z

Updated: 2025-01-30T21:23:22.776Z

Reserved: 2024-12-23T21:42:54.089Z

Link: CVE-2025-0145

cve-icon Vulnrichment

Updated: 2025-01-30T21:23:18.810Z

cve-icon NVD

Status : Received

Published: 2025-01-30T20:15:34.547

Modified: 2025-01-30T20:15:34.547

Link: CVE-2025-0145

cve-icon Redhat

No data.