CVE-2026-30903 - Vulnerability Analysis
CriticalCVSS: 9.6Last Updated: March 11, 2026
Zoom Workplace - Privilege Escalation
Overview
Zoom Workplace for Windows < 6.6.0 contains an external control of file name or path vulnerability in the Mail feature, letting unauthenticated attackers escalate privileges via network access.
Severity & Score
Impact
Unauthenticated attackers can escalate privileges, potentially gaining unauthorized access or control over the system.
Mitigation
Update to version 6.6.0 or later.
Social Media Activity(2 posts)
šØ New security advisory: CVE-2026-30903 affects multiple systems. ⢠Impact: Remote code execution or complete system compromise possible ⢠Risk: Attackers can gain full control of affected systems ⢠Mitigation: Patch immediately or isolate affected systems Full breakdown: https://www.yazoul.net/advisory/cve/cve-2026-30903-zoom-workplace-mail-path-control-vulnerability-update-now #Cybersecurity #ZeroDay #ThreatIntel
View original postš“ CVE-2026-30903 - Critical (9.6) External Control of File Name or Path in the Mail feature of Zoom Workplace for Windows before 6.6.0 may allow an unauthenticated user to conduct an escalation of privilege via network access. š https://www.thehackerwire.com/vulnerability/CVE-2026-30903/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
View original postRelated Resources
Details
- CVE ID
- CVE-2026-30903
- Severity
- Critical
- CVSS Score
- 9.6
- Type
- broken_access_control
- Status
- new
- EPSS
- 5.2%
- Social Posts
- 2
CWE
- CWE-73
CVSS Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H