CVE-2026-53410
EUVD-2026-4504516.07.2026, 21:17
A time-of-check to time-of-use (TOCTOU) race condition in the installation and uninstallation process of certain Zoom Clients for Windows could allow an authenticated local user to escalate privileges.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| zoom | remote_control_for_zoom_contact_center | 𝑥 < 7.0.0 |
| zoom | rooms | 𝑥 < 7.0.5 |
| zoom | workplace_desktop | 𝑥 < 7.0.5 |
| zoom | workplace_virtual_desktop_infrastructure | 𝑥 < 6.5.17 |
| zoom | workplace_virtual_desktop_infrastructure | 6.6.0 ≤ 𝑥 < 6.6.14 |
𝑥
= Vulnerable software versions