Improper Action Enforcement in Zoom Workplace Clients for Windows
CVE-2025-58135

5.3MEDIUM

What is CVE-2025-58135?

An improper action enforcement vulnerability exists in certain Zoom Workplace Clients for Windows, enabling unauthenticated users to potentially disclose sensitive information through network access. This could lead to unauthorized exposure of data, posing a significant risk to users if exploited.

Affected Version(s)

Zoom Workplace Clients for Windows Windows 0

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-58135 : Improper Action Enforcement in Zoom Workplace Clients for Windows