Workplace Desktop
Vendor:
First CVE: May 15, 2024 · Active for 2 years
73
Total CVEs
More Total CVEs than 99% of tracked products
24.3
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
6.8
Avg CVSS
Higher Avg CVSS than 40% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Workplace Desktop over time
Volume of CVEsAvg CVSS Base Score
First CVE
May 15, 2024
2 years ago
Most Recent CVE
Mar 11, 2026
138 days ago
CVE Severity & Scoring
Workplace Desktop73 CVEs
64%
32%
All CVEs352,785 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local19 (26.0%)
Network51 (69.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network3 (4.1%)
Attack Complexity
Low68 (93.2%)
High5 (6.8%)
Unknown0 (0.0%)
User Interaction
None54 (74.0%)
Unknown0 (0.0%)
Required19 (26.0%)
Privileges Required
Low41 (56.2%)
High7 (9.6%)
None25 (34.2%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (73 CVEs).
73 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-30903CRITICAL External Control of File Name or Path in the Mail feature of Zoom Workplace for Windows before 6.6.0 may allow an unauthenticated user to conduct an escalation of privilege via net | Mar 11, 2026 | 9.8 | 34 | NO | NO |
CVE-2025-49457HIGH Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access | Aug 12, 2025 | 8.8 | 33 | NO | NO |
CVE-2025-0147CRITICAL Type confusion in the Zoom Workplace App for Linux before 6.2.10 may allow an authorized user to conduct an escalation of privilege via network access. | Jan 30, 2025 | 9.8 | 30 | NO | NO |
CVE-2024-45421HIGH Buffer overflow in some Zoom Apps may allow an authenticated user to conduct an escalation of privilege via network access. | Feb 25, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-27440HIGH Heap overflow in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via network access. | Mar 11, 2025 | 8.8 | 27 | NO | NO |
CVE-2025-27439HIGH Buffer underflow in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via network access. | Mar 11, 2025 | 8.8 | 27 | NO | NO |
CVE-2025-0151HIGH Use after free in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via network access. | Mar 11, 2025 | 8.8 | 27 | NO | NO |
CVE-2024-39825HIGH Buffer overflow in some Zoom Workplace Apps and Rooms Clients may allow an authenticated user to conduct an escalation of privilege via network access. | Aug 14, 2024 | 8.5 | 27 | NO | NO |
CVE-2026-30902HIGH Improper Privilege Management in certain Zoom Clients for Windows may allow an authenticated user to conduct an escalation of privilege via local access. | Mar 11, 2026 | 7.8 | 26 | NO | NO |
CVE-2025-46788CRITICAL Improper certificate validation in Zoom Workplace for Linux before version 6.4.13 may allow an unauthorized user to conduct an information disclosure via network access. | Jul 10, 2025 | 9.1 | 26 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (73 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (73 CVEs).
Media Mentions
Signals from CVEs in this product scope (73 CVEs).
Top CNAs Publishing CVEs For Workplace Desktop
Top CWEs
Versions
No cataloged versions.