PT-2024-5133 · Zoom · Zoom Workplace Desktop App

Published

2024-07-09

·

Updated

2025-08-05

·

CVE-2024-39820

CVSS v3.1

6.6

Medium

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Zoom Workplace Desktop App for macOS versions prior to 6.0.10
Description: The issue is related to an uncontrolled search path element in the installer, which may allow an authenticated user to conduct a denial of service via local access. This could potentially be exploited to cause service disruptions.
Recommendations: For Zoom Workplace Desktop App for macOS versions prior to 6.0.10, update to version 6.0.10 or later to resolve the issue. As a temporary workaround, consider restricting local access to the installer to minimize the risk of exploitation.

Fix

DoS

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2024-05680
CVE-2024-39820

Affected Products

Zoom Workplace Desktop App