PT-2024-5136 · Zoom · Zoom Workplace App For Windows

Published

2024-05-15

·

Updated

2025-08-21

·

CVE-2024-27244

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Zoom Workplace VDI App for Windows (affected versions not specified)
Description: The issue is related to insufficient verification of data authenticity in the installer, which may allow an authenticated user to conduct an escalation of privilege via local access. This could potentially be exploited by an attacker to gain elevated privileges.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insufficient Verification of Data Authenticity

Improper Verification of Cryptographic Signature

Weakness Enumeration

Related Identifiers

BDU:2024-05683
CVE-2024-27244

Affected Products

Zoom Workplace App For Windows