Unauthenticated Takeover: Critical 9.6 CVSS Zoom Flaw Exposes Windows Users to Remote Privilege Escalation
ID: 8406804c-bcb7-57ab-9947-0b5fc9f9df07
STIX ID: report--8406804c-bcb7-57ab-9947-0b5fc9f9df07
Feed Name: securityonline.info
Threat Score
Zoom published security advisories for four Windows vulnerabilities — the most severe is CVE-2026-30903 (CVSS 9.6) enabling potential unauthenticated privilege escalation via the Mail feature, and three additional high-severity local privilege-escalation flaws affect Zoom Workplace, VDI clients, Meeting SDK, and Zoom Rooms; administrators should apply the listed fixed versions immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
