📦

rooms_controller

Vendor: zoom

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 3 Remote Access
Total CVEs 79 Total Indexed
Avg. EPSS 0.37% Exploit Prob.
Latest CVE CVE-2025-64739 Nov 13

Security Vulnerability Index

Page 1 / 8
4.3 CVSS

External control of file name or path in certain Zoom Clients may allow an unauthenticated user to conduct a disclosure of information via network access.

EPSS: 0.31%
5.3 CVSS

Improper removal of sensitive information in certain Zoom Clients before version 6.5.10 may allow an unauthenticated user to conduct a disclosure of information via network access.

EPSS: 0.26%
5.3 CVSS

Improper action enforcement in certain Zoom Workplace Clients for Windows may allow an unauthenticated user to conduct a disclosure of information via network access.

EPSS: 0.24%
4.3 CVSS

Incorrect authorization in certain Zoom Workplace Clients for Windows may allow an authenticated user to conduct an impact to integrity via network access.

EPSS: 0.19%
4.3 CVSS

Cross-site scripting in certain Zoom Workplace Clients may allow an unauthenticated user to conduct a denial of service via network access.

EPSS: 0.29%
4.3 CVSS

Uncontrolled resource consumption in certain Zoom Workplace Clients may allow an unauthenticated user to conduct a denial of service via network access.

EPSS: 0.25%
6.5 CVSS

Buffer overflow in certain Zoom Workplace Clients may allow an authenticated user to conduct a denial of service via network access.

EPSS: 0.29%
9.6 CVSS

Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access

EPSS: 0.54%
6.2 CVSS

Race condition in the installer for certain Zoom Clients for Windows may allow an unauthenticated user to impact application integrity via local access.

EPSS: 0.11%
4.3 CVSS

Cross-site scripting in some Zoom Workplace Apps may allow an authenticated user to impact app integrity via network access.

EPSS: 0.25%