Workplace Desktop

Vendor:

First CVE: May 15, 2024 · Active for 2 years

73
Total CVEs
More Total CVEs than 99% of tracked products
24.3
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
6.8
Avg CVSS
Higher Avg CVSS than 40% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Workplace Desktop over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 15, 2024
2 years ago
Most Recent CVE
Mar 11, 2026
138 days ago

CVE Severity & Scoring

Workplace Desktop73 CVEs
All CVEs352,785 CVEs
MediumHighCritical
Attack Vector
Local19 (26.0%)
Network51 (69.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network3 (4.1%)
Attack Complexity
Low68 (93.2%)
High5 (6.8%)
Unknown0 (0.0%)
User Interaction
None54 (74.0%)
Unknown0 (0.0%)
Required19 (26.0%)
Privileges Required
Low41 (56.2%)
High7 (9.6%)
None25 (34.2%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (73 CVEs).

73 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
External Control of File Name or Path in the Mail feature of Zoom Workplace for Windows before 6.6.0 may allow an unauthenticated user to conduct an escalation of privilege via net
Mar 11, 20269.834NONO
Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access
Aug 12, 20258.833NONO
Type confusion in the Zoom Workplace App for Linux before 6.2.10 may allow an authorized user to conduct an escalation of privilege via network access.
Jan 30, 20259.830NONO
Buffer overflow in some Zoom Apps may allow an authenticated user to conduct an escalation of privilege via network access.
Feb 25, 20258.828NONO
Heap overflow in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via network access.
Mar 11, 20258.827NONO
Buffer underflow in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via network access.
Mar 11, 20258.827NONO
Use after free in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via network access.
Mar 11, 20258.827NONO
Buffer overflow in some Zoom Workplace Apps and Rooms Clients may allow an authenticated user to conduct an escalation of privilege via network access.
Aug 14, 20248.527NONO
Improper Privilege Management in certain Zoom Clients for Windows may allow an authenticated user to conduct an escalation of privilege via local access.
Mar 11, 20267.826NONO
Improper certificate validation in Zoom Workplace for Linux before version 6.4.13 may allow an unauthorized user to conduct an information disclosure via network access.
Jul 10, 20259.126NONO

Exploit Exposure

Signals from CVEs in this product scope (73 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (73 CVEs).

Media Mentions

Signals from CVEs in this product scope (73 CVEs).

Top CNAs Publishing CVEs For Workplace Desktop

Top CWEs

Versions

No cataloged versions.