Improper Input Validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an unauthenticated user to conduct an account takeover via network access.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.zoom.com/en/trust/security-bulletin/zsb-26014 |
|
History
Wed, 12 Aug 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zoom
Zoom workplace Desktop Zoom workplace Virtual Desktop Infrastructure |
|
| CPEs | cpe:2.3:a:zoom:workplace_desktop:*:*:*:*:*:windows:*:* cpe:2.3:a:zoom:workplace_virtual_desktop_infrastructure:*:*:*:*:*:windows:*:* |
|
| Vendors & Products |
Zoom
Zoom workplace Desktop Zoom workplace Virtual Desktop Infrastructure |
Thu, 30 Jul 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zoom Communications
Zoom Communications zoom Workplace |
|
| Vendors & Products |
Zoom Communications
Zoom Communications zoom Workplace |
Fri, 17 Jul 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 16 Jul 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Input Validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an unauthenticated user to conduct an account takeover via network access. | |
| Title | Zoom Workplace VDI Plugin for Windows - Improper Input Validation | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Zoom
Published: 2026-07-16T21:15:25.664Z
Updated: 2026-07-17T13:18:46.094Z
Reserved: 2026-06-09T10:18:05.660Z
Link: CVE-2026-53412
Updated: 2026-07-17T13:18:42.970Z
Status : Analyzed
Published: 2026-07-16T22:17:31.380
Modified: 2026-08-11T23:59:07.277
Link: CVE-2026-53412
No data.