CVE-2025-67461: Zoom Rooms for macOS - External Control of File Name or Path
External control of file name or path in Zoom Rooms for macOS before version 6.6.0 may allow an authenticated user to conduct a disclosure of information via local access.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Zoom Rooms for macOSto a version that resolves this vulnerability.Fixed in 6.6.0
Event History
Frequently Asked Questions
What is the severity of CVE-2025-67461?
CVE-2025-67461 is classified as a moderate severity vulnerability.
How do I fix CVE-2025-67461?
To fix CVE-2025-67461, update Zoom Rooms for macOS to version 6.6.0 or later.
Who is affected by CVE-2025-67461?
CVE-2025-67461 affects authenticated users of Zoom Rooms for macOS versions prior to 6.6.0.
What kind of information can be disclosed due to CVE-2025-67461?
CVE-2025-67461 may allow an authenticated user to disclose sensitive information through local access.
Is CVE-2025-67461 a remote exploitation risk?
CVE-2025-67461 is not a remote exploitation risk, as it requires local access by an authenticated user.