Symlink following in the installer for Zoom Workplace App for macOS before 6.2.10 may allow an authenticated user to conduct a denial of service via local access.
History

Thu, 30 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 30 Jan 2025 20:00:00 +0000

Type Values Removed Values Added
Description Symlink following in the installer for Zoom Workplace App for macOS before 6.2.10 may allow an authenticated user to conduct a denial of service via local access.
Title Zoom Workplace app for macOS - Symlink Following
Weaknesses CWE-59
References
Metrics cvssV3_1

{'score': 3.9, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Zoom

Published: 2025-01-30T19:47:26.128Z

Updated: 2025-01-30T21:22:42.397Z

Reserved: 2024-12-23T21:42:55.340Z

Link: CVE-2025-0146

cve-icon Vulnrichment

Updated: 2025-01-30T21:22:38.996Z

cve-icon NVD

Status : Received

Published: 2025-01-30T20:15:34.907

Modified: 2025-01-30T20:15:34.907

Link: CVE-2025-0146

cve-icon Redhat

No data.