Race Condition Vulnerability in Zoom Clients for Windows
CVE-2025-49456

6.2MEDIUM

Key Information:

Vendor
CVE Published:
12 August 2025

What is CVE-2025-49456?

A race condition vulnerability exists in the installer of specific Zoom Clients for Windows. This issue could allow an unauthenticated user with local access to the system to manipulate the application’s integrity. If exploited, this could lead to unauthorized alterations in the application's functioning, posing security implications for users. It is essential for users to ensure they are running the latest version of the client to mitigate potential risks associated with this vulnerability.

Affected Version(s)

Zoom Clients for Windows Windows see references

References

CVSS V3.1

Score:
6.2
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-49456 : Race Condition Vulnerability in Zoom Clients for Windows