CVE-2026-30902

Improper Privilege Management in certain Zoom Clients for Windows may allow an authenticated user to conduct an escalation of privilege via local access.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:zoom:rooms:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:workplace_desktop:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:workplace_virtual_desktop_infrastructure:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:workplace_virtual_desktop_infrastructure:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:workplace_virtual_desktop_infrastructure:*:*:*:*:*:windows:*:*

History

14 May 2026, 20:28

Type Values Removed Values Added
First Time Zoom workplace Virtual Desktop Infrastructure
Zoom rooms
Zoom workplace Desktop
Zoom
Summary
  • (es) Gestión inadecuada de privilegios en ciertos Clientes de Zoom para Windows podría permitir a un usuario autenticado realizar una escalada de privilegios a través de acceso local.
References () https://www.zoom.com/en/trust/security-bulletin/zsb-26004 - () https://www.zoom.com/en/trust/security-bulletin/zsb-26004 - Vendor Advisory
CPE cpe:2.3:a:zoom:rooms:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:workplace_virtual_desktop_infrastructure:*:*:*:*:*:windows:*:*
cpe:2.3:a:zoom:workplace_desktop:*:*:*:*:*:windows:*:*
CWE NVD-CWE-noinfo

11 Mar 2026, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-11 15:16

Updated : 2026-05-14 20:28


NVD link : CVE-2026-30902

Mitre link : CVE-2026-30902

CVE.ORG link : CVE-2026-30902


JSON object : View

Products Affected

zoom

  • rooms
  • workplace_desktop
  • workplace_virtual_desktop_infrastructure
CWE
CWE-269

Improper Privilege Management

NVD-CWE-noinfo