CVE-2025-49459: Zoom Workplace for Windows on ARM - Missing Authorization
Published Sep 9, 2025
·Updated
Missing authorization in the installer for Zoom Workplace for Windows on ARM before version 6.5.0 may allow an authenticated user to conduct an escalation of privilege via local access.
Affected Software
1 affected component
Zoom Workplace<6.5.0
Event History
Sep 9, 2025
CVE Published
via MITRE·09:29 PM
Data Sourced
via MITRE·09:29 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-49459?
CVE-2025-49459 is considered to have a moderate severity due to the potential for privilege escalation through missing authorization.
2
How do I fix CVE-2025-49459?
To fix CVE-2025-49459, update Zoom Workplace for Windows on ARM to version 6.5.0 or later.
3
What systems are affected by CVE-2025-49459?
CVE-2025-49459 affects Zoom Workplace for Windows on ARM prior to version 6.5.0.
4
What type of vulnerability is CVE-2025-49459?
CVE-2025-49459 is an authorization vulnerability that allows for escalation of privileges.
5
Who can exploit CVE-2025-49459?
An authenticated user with local access can exploit CVE-2025-49459 to escalate privileges.