Rooms Controller Zoom Rooms Controller

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Zoom Rooms Controller.

By the Year

In 2025 there have been 11 vulnerabilities in Zoom Rooms Controller with an average score of 6.8 out of ten. Last year, in 2024 Rooms Controller had 11 security vulnerabilities published. If vulnerabilities keep coming in at the current rate, it appears that number of security vulnerabilities in Rooms Controller in 2025 could surpass last years number. However, the average CVE base score of the vulnerabilities in 2025 is greater by 0.66.

Year Vulnerabilities Average Score
2025 11 6.76
2024 11 6.10

It may take a day or so for new Rooms Controller vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Zoom Rooms Controller Security Vulnerabilities

Zoom Workplace App Windows Null Deref Allows Authenticated DoS
CVE-2025-30665 - May 14, 2025

NULL pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

Zoom Workplace Apps Windows: Authenticated DoS via NULL Pointer Deref
CVE-2025-30666 - May 14, 2025

NULL pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

Insecure Default Variable Init in Zoom Workplace Apps (Win)
CVE-2025-27443 5.5 - Medium - April 08, 2025

Insecure default variable initialization in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a loss of integrity via local access.

Zoom Workplace Apps Windows NPE DoS via Network Access
CVE-2025-30670 - April 08, 2025

Null pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

CVE-2025-30671: Zoom Workplace Windows App DoS via NPE
CVE-2025-30671 - April 08, 2025

Null pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access.

Zoom Workplace App: Unprivileged DOS via Unverified Data
CVE-2025-0149 7.5 - High - March 11, 2025

Insufficient verification of data authenticity in some Zoom Workplace Apps may allow an unprivileged user to conduct a denial of service via network access.

Zoom Workplace App Ownership Flaw Enables Info Disclosure
CVE-2024-45426 6.5 - Medium - February 25, 2025

Incorrect ownership assignment in some Zoom Workplace Apps may allow a privileged user to conduct an information disclosure via network access.

Zoom Workplace App Privilege Escalation: Info Disclosure via Network
CVE-2024-45425 6.5 - Medium - February 25, 2025

Incorrect user management in some Zoom Workplace Apps may allow a privileged user to conduct an information disclosure via network access.

Zoom Workplace Apps: Unauth Data Disclosure via Business Logic Flaw
CVE-2024-45424 7.5 - High - February 25, 2025

Business logic error in some Zoom Workplace Apps may allow an unauthenticated user to conduct a disclosure of information via network access.

Zoom Apps Buffer Overflow Escalation via Authenticated Network Access
CVE-2024-45421 8.8 - High - February 25, 2025

Buffer overflow in some Zoom Apps may allow an authenticated user to conduct an escalation of privilege via network access.

Zoom Workplace App macOS <6.2.10 Symlink Following in Installer Local DOS
CVE-2025-0146 5 - Medium - January 30, 2025

Symlink following in the installer for Zoom Workplace App for macOS before 6.2.10 may allow an authenticated user to conduct a denial of service via local access.

Zoom Apps Information Disclosure Vulnerability
CVE-2024-45419 7.5 - High - November 19, 2024

Improper input validation in some Zoom Apps may allow an unauthenticated user to conduct a disclosure of information via network access.

Zoom Apps Uncontrolled Resource Consumption Denial of Service Vulnerability
CVE-2024-45420 6.5 - Medium - November 19, 2024

Uncontrolled resource consumption in some Zoom Apps before version 6.2.0 may allow an authenticated user to conduct a denial of service via network access.

Zoom Apps: Improper Input Validation Leading to Denial of Service
CVE-2024-45422 7.5 - High - November 19, 2024

Improper input validation in some Zoom Apps before version 6.2.0 may allow an unauthenticated user to conduct a denial of service via network access.

Zoom Workplace: Authenticated Data Disclosure in Rooms Apps/SDKs
CVE-2024-39822 6.5 - Medium - August 14, 2024

Sensitive information exposure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user to conduct an information disclosure via network access.

Zoom Workplace Apps/SDKs/Rooms Clients: Missing Auth Allows Info Disclosure
CVE-2024-39823 4.9 - Medium - August 14, 2024

Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged user to conduct an information disclosure via network access.

AuthZ

Zoom Workplace Apps/SDKs/Rooms: Missing Auth Enables Info Disclosure
CVE-2024-39824 4.9 - Medium - August 14, 2024

Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged user to conduct an information disclosure via network access.

AuthZ

Zoom Workplace Apps/SDKs Missing Auth Enabling Info Disclosure
CVE-2024-42434 4.9 - Medium - August 14, 2024

Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged user to conduct an information disclosure via network access.

AuthZ

Zoom Info Disclosure via Network (CVE-2024-42435)
CVE-2024-42435 4.9 - Medium - August 14, 2024

Sensitive information disclosure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged user to conduct an information disclosure via network access.

Zoom Workplace Buffer Overflow Allows Authenticated DoS
CVE-2024-42436 6.5 - Medium - August 14, 2024

Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user to conduct a denial of service via network access.

Memory Corruption

Zoom Workplace/Rooms Buffer Overflow: Authenticated DoS via Network
CVE-2024-42437 6.5 - Medium - August 14, 2024

Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user to conduct a denial of service via network access.

Memory Corruption

Zoom Workplace Apps/SDK Buffer Overflow Enables Authenticated DoS
CVE-2024-42438 6.5 - Medium - August 14, 2024

Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user to conduct a denial of service via network access.

Memory Corruption

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Zoom Rooms Controller or by Zoom? Click the Watch button to subscribe.

Zoom
Vendor

subscribe