CVE-2026-30902Disclosure(zoom / rooms)

LOWCVSS 7.8 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper Privilege Management in certain Zoom Clients for Windows may allow an authenticated user to conduct an escalation of privilege via local access.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-269

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • rooms
  • workplace_desktop
  • workplace_virtual_desktop_infrastructure

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 3 classified signals
  • Peaked at 2 mentions on most recent observed day (2026-03-15)
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
roomsworkplace_desktopworkplace_virtual_desktop_infrastructure

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-03-10: 1Mentions · 2026-03-15: 2Technical Details · 2026-03-10: 1Technical Details · 2026-03-15: 203-1003-15
Signal classification1 categories
Disclosure
3100.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-03-101
Disclosure1
2026-03-152
Disclosure2
Full discourse3 posts
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-30902 Improper Privilege Management in certain Zoom Clients for Windows may allow an authenticated user to conduct an escalation of privilege via local access. https://www.cve.org/CVERecord?id=CVE-2026-30902 ----- Traducción: CVE-2026-30902 Gestión inapropiad… http://infoflow.cloud`

    Post summary

    The post announces the CVE-2026-30902 vulnerability in Zoom Windows clients, describing an improper privilege management flaw that could allow local privilege escalation for authenticated users.

    0000034
    57 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-30902 Improper Privilege Management in certain Zoom Clients for Windows may allow an authenticated user to conduct an escalation of privilege via local access. https://www.cve.org/CVERecord?id=CVE-2026-30902

    Post summary

    The advisory announces CVE‑2026‑30902, detailing a privilege‑escalation flaw in certain Zoom Windows clients that allows locally authenticated users to elevate privileges.

    00000388
    56.7K followersView on X
  • まっちゃだいふく@ripjyr
    Disclosure

    Zoomに、Highの脆弱性情報 ZSB-26004 が公開されました。 「CVE-2026-30902 : Zoom Clients for Windows - Improper Privilege Management」 CVSSv3: 7.8 → https://www.zoom.com/en/trust/security-bulletin/ZSB-26004/

    Post summary

    Zoom announced a high‑severity vulnerability (CVE‑2026‑30902) affecting Windows clients, detailing improper privilege management and a CVSSv3 score of 7.8.

    00000375
    8.6K followersView on X
CPE platform detail3 entries

3 of 3 entries

PartVendorProductVersionTarget SWTarget HW
Appzoomrooms-windows-
Appzoomworkplace_desktop-windows-
Appzoomworkplace_virtual_desktop_infrastructure-windows-

Explore more