CVE Vulnerabilities

CVE-2025-46788

Improper Certificate Validation

Published: Jul 10, 2025 | Modified: Aug 05, 2025
CVSS 3.x
9.1
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper certificate validation in Zoom Workplace for Linux before version 6.4.13 may allow an unauthorized user to conduct an information disclosure via network access.

Weakness

The product does not validate, or incorrectly validates, a certificate.

Affected Software

Name Vendor Start Version End Version
Workplace_desktop Zoom * 6.4.13 (excluding)

Potential Mitigations

References

  • https://https://www.zoom.com/en/trust/security-bulletin/zsb-25023/