PT-2025-29109 · Zoom Video Communications · Zoom Client

Published

2025-07-08

·

Updated

2025-08-05

·

CVE-2025-49462

CVSS v2.0

4.0

Medium

VectorAV:N/AC:L/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Zoom Clients versions prior to 6.4.5
Description: Cross-site scripting may allow an authenticated user to conduct a disclosure of information via network access.
Recommendations: Update Zoom Clients to version 6.4.5 or later.

Fix

CSRF

Weakness Enumeration

Related Identifiers

BDU:2025-08889
CVE-2025-49462

Affected Products

Zoom Client