Symlink following in the installer for the Zoom Workplace VDI Plugin macOS Universal installer before version 6.3.14, 6.4.14, and 6.5.10 in their respective tracks may allow an authenticated user to conduct a disclosure of information via network access.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.zoom.com/en/trust/security-bulletin/zsb-25045 |
|
History
Fri, 14 Nov 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple macos Zoom Zoom workplace Zoom workplace App Zoom zoom |
|
| Vendors & Products |
Apple
Apple macos Zoom Zoom workplace Zoom workplace App Zoom zoom |
Thu, 13 Nov 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 13 Nov 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Symlink following in the installer for the Zoom Workplace VDI Plugin macOS Universal installer before version 6.3.14, 6.4.14, and 6.5.10 in their respective tracks may allow an authenticated user to conduct a disclosure of information via network access. | |
| Title | Zoom Workplace VDI Plugin macOS Universal Installer - Symlink Following | |
| Weaknesses | CWE-646 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Zoom
Published:
Updated: 2025-11-14T04:55:37.758Z
Reserved: 2025-03-24T22:35:25.475Z
Link: CVE-2025-30662
Updated: 2025-11-13T15:33:41.649Z
Status : Awaiting Analysis
Published: 2025-11-13T15:15:51.070
Modified: 2025-11-14T16:42:03.187
Link: CVE-2025-30662
No data.