Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27506 | Improper action enforcement in certain Zoom Workplace Clients for Windows may allow an unauthenticated user to conduct a disclosure of information via network access. |
| Link | Providers |
|---|---|
| https://www.zoom.com/en/trust/security-bulletin/ZSB-25036 |
|
Mon, 06 Oct 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zoom meeting Software Development Kit
Zoom rooms Zoom rooms Controller Zoom workplace Desktop Zoom workplace Virtual Desktop Infrastructure |
|
| CPEs | cpe:2.3:a:zoom:meeting_software_development_kit:*:*:*:*:*:windows:*:* cpe:2.3:a:zoom:rooms:*:*:*:*:*:windows:*:* cpe:2.3:a:zoom:rooms_controller:*:*:*:*:*:windows:*:* cpe:2.3:a:zoom:workplace_desktop:*:*:*:*:*:windows:*:* cpe:2.3:a:zoom:workplace_virtual_desktop_infrastructure:*:*:*:*:*:windows:*:* |
|
| Vendors & Products |
Zoom meeting Software Development Kit
Zoom rooms Zoom rooms Controller Zoom workplace Desktop Zoom workplace Virtual Desktop Infrastructure |
Fri, 12 Sep 2025 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft windows Zoom Zoom workplace Zoom workplace App Zoom zoom |
|
| Vendors & Products |
Microsoft
Microsoft windows Zoom Zoom workplace Zoom workplace App Zoom zoom |
Wed, 10 Sep 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Sep 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper action enforcement in certain Zoom Workplace Clients for Windows may allow an unauthenticated user to conduct a disclosure of information via network access. | |
| Title | Zoom Workplace Clients for Windows - Improper Action Enforcement | |
| Weaknesses | CWE-837 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Zoom
Published:
Updated: 2025-09-10T19:33:42.439Z
Reserved: 2025-08-25T21:15:02.863Z
Link: CVE-2025-58135
Updated: 2025-09-10T19:33:38.955Z
Status : Analyzed
Published: 2025-09-09T22:15:34.117
Modified: 2025-10-06T17:58:01.900
Link: CVE-2025-58135
No data.
OpenCVE Enrichment
Updated: 2025-09-12T09:11:50Z
EUVD