External Control of File Name or Path
CVE-2025-67461
Summary
External control of file name or path in Zoom Rooms for macOS before version 6.6.0 may allow an authenticated user to conduct a disclosure of information via local access.
- LOW
- LOCAL
- NONE
- UNCHANGED
- REQUIRED
- LOW
- HIGH
- NONE
CWE-73 - External Control of File Name or Path
The software allows user input to control or influence paths or file names that are used in filesystem operations.
References
Advisory Timeline
- Published