Fiche vulnérabilité
CVE-2025-62484 : faille critique zoom meeting software development kit (CVSS 9.8)
Description
Inefficient regular expression complexity in certain Zoom Workplace Clients before version 6.5.10 may allow an unauthenticated user to conduct an escalation of privilege via network access.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 13 nov. 2025
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- zoom meeting software development kit
- zoom workplace