CVE-2024-45425

CVSS 3.1 Score 4.9 of 10 (medium)

Details

Published Feb 25, 2025
Updated: Mar 5, 2025
CWE ID 286

Summary

CVE-2024-45425 is a newly discovered vulnerability in certain Zoom Workplace Apps. This issue arises from inadequate user management, which can enable a privileged user to gain unauthorized access to sensitive information. By exploiting this network-accessible information disclosure flaw, the malicious user can potentially obtain confidential data, posing a significant risk to an organization's security. It is important to note that Zoom has been made aware of the vulnerability, and steps are being taken to address the issue. Users are advised to apply patches or updates as soon as they become available to mitigate the potential impact of this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share