Workplace Virtual Desktop Infrastructure
Vendor:
First CVE: May 15, 2024 · Active for 2 years
57
Total CVEs
More Total CVEs than 99% of tracked products
19.0
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 43% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Workplace Virtual Desktop Infrastructure over time
Volume of CVEsAvg CVSS Base Score
First CVE
May 15, 2024
2 years ago
Most Recent CVE
May 13, 2026
75 days ago
CVE Severity & Scoring
Workplace Virtual Desktop Infrastructure57 CVEs
58%
40%
All CVEs352,785 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local10 (17.5%)
Network44 (77.2%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network3 (5.3%)
Attack Complexity
Low54 (94.7%)
High3 (5.3%)
Unknown0 (0.0%)
User Interaction
None46 (80.7%)
Unknown0 (0.0%)
Required11 (19.3%)
Privileges Required
Low34 (59.6%)
High4 (7.0%)
None19 (33.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (57 CVEs).
57 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-30903CRITICAL External Control of File Name or Path in the Mail feature of Zoom Workplace for Windows before 6.6.0 may allow an unauthenticated user to conduct an escalation of privilege via net | Mar 11, 2026 | 9.8 | 34 | NO | NO |
CVE-2025-49457HIGH Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access | Aug 12, 2025 | 8.8 | 33 | NO | NO |
CVE-2026-30905HIGH External Control of File Name or Path in the Zoom Workplace VDI Plugin Windows Universal Installer before version 6.6.11 may allow an authenticated user to conduct an escalation of | May 13, 2026 | 7.8 | 29 | NO | NO |
CVE-2024-45421HIGH Buffer overflow in some Zoom Apps may allow an authenticated user to conduct an escalation of privilege via network access. | Feb 25, 2025 | 8.8 | 28 | NO | NO |
CVE-2025-27440HIGH Heap overflow in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via network access. | Mar 11, 2025 | 8.8 | 27 | NO | NO |
CVE-2025-27439HIGH Buffer underflow in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via network access. | Mar 11, 2025 | 8.8 | 27 | NO | NO |
CVE-2025-0151HIGH Use after free in some Zoom Workplace Apps may allow an authenticated user to conduct an escalation of privilege via network access. | Mar 11, 2025 | 8.8 | 27 | NO | NO |
CVE-2024-39825HIGH Buffer overflow in some Zoom Workplace Apps and Rooms Clients may allow an authenticated user to conduct an escalation of privilege via network access. | Aug 14, 2024 | 8.5 | 27 | NO | NO |
CVE-2026-30902HIGH Improper Privilege Management in certain Zoom Clients for Windows may allow an authenticated user to conduct an escalation of privilege via local access. | Mar 11, 2026 | 7.8 | 26 | NO | NO |
CVE-2025-62483HIGH Improper removal of sensitive information in certain Zoom Clients before version 6.5.10 may allow an unauthenticated user to conduct a disclosure of information via network access. | Nov 13, 2025 | 7.5 | 25 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (57 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (57 CVEs).
Media Mentions
Signals from CVEs in this product scope (57 CVEs).
Top CNAs Publishing CVEs For Workplace Virtual Desktop Infrastructure
Top CWEs
Versions
No cataloged versions.