Home

Description

Insufficient Verification of Data Authenticity in Remote Control for Zoom Contact Center for Windows before version 7.0.0 may allow an authenticated user to enable an escalation of privilege via local access.

PUBLISHED Reserved 2026-06-09 | Published 2026-06-12 | Updated 2026-06-12 | Assigner Zoom




HIGH: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Problem types

CWE-345: Insufficient Verification of Data Authenticity

Product status

Default status
unaffected

Any version before 7.0.0
affected

References

www.zoom.com/en/trust/security-bulletin/zsb-26009

cve.org (CVE-2026-53406)

nvd.nist.gov (CVE-2026-53406)

Download JSON