
CVE-2025-0146 – Zoom Workplace app for macOS - Symlink Following
https://notcve.org/view.php?id=CVE-2025-0146
30 Jan 2025 — Symlink following in the installer for Zoom Workplace App for macOS before 6.2.10 may allow an authenticated user to conduct a denial of service via local access. • https://www.zoom.com/en/trust/security-bulletin/zsb-25005 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVE-2024-42441 – Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS, Zoom Rooms Client for macOS - Improper Privilege Management
https://notcve.org/view.php?id=CVE-2024-42441
14 Aug 2024 — Improper privilege management in the installer for Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS and Zoom Rooms Client for macOS before 6.1.5 may allow a privileged user to conduct an escalation of privilege via local access. • https://www.zoom.com/en/trust/security-bulletin/zsb-24034 • CWE-269: Improper Privilege Management •

CVE-2024-42440 – Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS, Zoom Rooms Client for macOS - Improper Privilege Management
https://notcve.org/view.php?id=CVE-2024-42440
14 Aug 2024 — Improper privilege management in the installer for Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS and Zoom Rooms Client for macOS before 6.1.5 may allow a privileged user to conduct an escalation of privilege via local access. • https://www.zoom.com/en/trust/security-bulletin/zsb-24034 • CWE-269: Improper Privilege Management •

CVE-2024-42439 – Zoom Workplace Desktop App for macOS and Zoom Meeting SDK for macOS - Untrusted Search Path
https://notcve.org/view.php?id=CVE-2024-42439
14 Aug 2024 — Untrusted search path in the installer for Zoom Workplace Desktop App for macOS and Zoom Meeting SDK for macOS before 6.1.0 may allow a privileged user to conduct an escalation of privilege via local access. • https://www.zoom.com/en/trust/security-bulletin/zsb-24032 • CWE-426: Untrusted Search Path •

CVE-2024-39820 – Zoom Workplace Desktop App for macOS - Uncontrolled Search Path Element
https://notcve.org/view.php?id=CVE-2024-39820
15 Jul 2024 — Uncontrolled search path element in the installer for Zoom Workplace Desktop App for macOS before version 6.0.10 may allow an authenticated user to conduct a denial of service via local access. El elemento de ruta de búsqueda no controlado en el instalador de la aplicación de escritorio Zoom Workplace para macOS anterior a la versión 6.0.10 puede permitir que un usuario autenticado realice una denegación de servicio a través del acceso local. • https://www.zoom.com/en/trust/security-bulletin/zsb-24027 • CWE-427: Uncontrolled Search Path Element •