Symlink following in the installer for the Zoom Workplace VDI Plugin macOS Universal installer before version 6.3.14, 6.4.14, and 6.5.10 in their respective tracks may allow an authenticated user to conduct a disclosure of information via network access.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.zoom.com/en/trust/security-bulletin/zsb-25045 |
|
History
Thu, 13 Nov 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 13 Nov 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Symlink following in the installer for the Zoom Workplace VDI Plugin macOS Universal installer before version 6.3.14, 6.4.14, and 6.5.10 in their respective tracks may allow an authenticated user to conduct a disclosure of information via network access. | |
| Title | Zoom Workplace VDI Plugin macOS Universal Installer - Symlink Following | |
| Weaknesses | CWE-646 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Zoom
Published:
Updated: 2025-11-14T04:55:37.758Z
Reserved: 2025-03-24T22:35:25.475Z
Link: CVE-2025-30662
Updated: 2025-11-13T15:33:41.649Z
Status : Received
Published: 2025-11-13T15:15:51.070
Modified: 2025-11-13T15:15:51.070
Link: CVE-2025-30662
No data.
OpenCVE Enrichment
No data.