Vulnerability Monitor

The vendors, products, and vulnerabilities you care about
rooms Vendor: zoom

About This Product

rooms is a software product offered by zoom. This product is widely deployed in production environments, making vulnerability monitoring essential for organizations relying on it. Security vulnerabilities in products of this category can affect system availability, data confidentiality, and integrity across entire networks. The significant number of reported vulnerabilities indicates this product has received substantial security scrutiny and community focus over time. Regular assessment of known vulnerabilities and timely patching are fundamental components of responsible system administration for any deployment of this software.

Vulnerability Landscape Summary

SecUtils has identified 104 known vulnerabilities affecting zoom rooms. This includes 2 critical-severity issues and 35 high-severity issues that warrant immediate attention. Vulnerabilities in this product have been disclosed spanning from 2021 to 2025, indicating a recent active security attention. 60 medium-severity issues and 7 low-severity issues complete the vulnerability landscape. Organizations should prioritize patching based on deployment context, asset criticality, and exploitation likelihood rather than severity alone.

Known Vulnerabilities
ID Date Published Last Modified Severity (CVSSv3) Severity (CVSSv2) Exploit Available
CVE-2021-34409 2021-09-27 2024-11-21 7.8 7.2 Unknown
CVE-2021-34411 2021-09-27 2024-11-21 7.8 4.6 Unknown
CVE-2022-22786 2022-05-18 2024-11-21 7.5 6.8 Likely
CVE-2022-22788 2022-06-15 2024-11-21 7.1 6.9 Unknown
CVE-2022-28752 2022-08-17 2024-11-21 8.8 - -
CVE-2022-28764 2022-11-14 2024-11-21 3.3 - -
CVE-2022-28766 2022-11-17 2024-11-21 3.3 - -
CVE-2022-36924 2022-11-17 2024-11-21 8.8 - -
CVE-2022-36925 2023-01-09 2024-11-21 4.4 - -
CVE-2022-36926 2023-01-09 2024-11-21 8.8 - -
CVE-2022-36927 2023-01-09 2024-11-21 8.8 - -
CVE-2022-36929 2023-01-09 2024-11-21 7.8 - -
CVE-2022-36930 2023-01-09 2024-11-21 8.8 - -
CVE-2023-22880 2023-03-16 2024-11-21 6.8 - -
CVE-2023-28597 2023-03-27 2025-02-19 8.3 - -
CVE-2023-34121 2023-06-13 2024-11-21 4.1 - -
CVE-2023-36539 2023-06-30 2024-11-21 5.3 - -
CVE-2023-34118 2023-07-11 2024-11-21 7.3 - -
CVE-2023-34119 2023-07-11 2024-11-21 8.2 - -
CVE-2023-36536 2023-07-11 2024-11-21 8.2 - -
CVE-2023-36537 2023-07-11 2024-11-21 7.3 - -
CVE-2023-36538 2023-07-11 2024-11-21 8.4 - -
CVE-2023-36532 2023-08-08 2024-11-21 5.9 - -
CVE-2023-36535 2023-08-08 2024-11-21 7.1 - -
CVE-2023-39218 2023-08-08 2024-11-21 6.1 - -
CVE-2023-39211 2023-08-08 2024-11-21 8.8 - -
CVE-2023-39212 2023-08-08 2024-11-21 7.9 - -
CVE-2023-39214 2023-08-08 2024-11-21 7.6 - -
CVE-2023-39199 2023-11-14 2024-11-21 4.9 - -
CVE-2023-39202 2023-11-14 2024-11-21 3.1 - -
CVE-2023-39204 2023-11-14 2024-11-21 4.3 - -
CVE-2023-39206 2023-11-14 2024-11-21 3.7 - -
CVE-2023-43582 2023-11-15 2024-11-21 5.5 - -
CVE-2023-43590 2023-11-15 2024-11-21 7.8 - -
CVE-2023-43591 2023-11-15 2025-06-11 7.8 - -
CVE-2024-24690 2024-02-14 2024-11-21 5.4 - -
CVE-2024-24691 2024-02-14 2024-11-21 9.6 - -
CVE-2024-24697 2024-02-14 2024-11-21 7.2 - -
CVE-2024-24698 2024-02-14 2024-11-21 4.9 - -
CVE-2024-24699 2024-02-14 2024-11-21 6.5 - -
CVE-2024-24692 2024-03-13 2024-11-21 5.3 - -
CVE-2024-24693 2024-03-13 2024-11-21 7.2 - -
CVE-2024-27238 2024-07-15 2025-08-05 7.1 - -
CVE-2024-27240 2024-07-15 2025-08-05 7.1 - -
CVE-2024-27241 2024-07-15 2025-08-20 5.3 - -
CVE-2024-39819 2024-07-15 2025-10-02 6.7 - -
CVE-2024-39821 2024-07-15 2025-08-05 6.6 - -
CVE-2024-39818 2024-08-14 2024-09-11 7.5 - -
CVE-2024-39822 2024-08-14 2024-09-04 6.5 - -
CVE-2024-39823 2024-08-14 2025-10-02 4.9 - -
CVE-2024-39824 2024-08-14 2025-10-02 4.9 - -
CVE-2024-39825 2024-08-14 2024-09-04 8.5 - -
CVE-2024-42434 2024-08-14 2025-10-02 4.9 - -
CVE-2024-42435 2024-08-14 2024-09-04 4.9 - -
CVE-2024-42436 2024-08-14 2024-09-04 6.5 - -
CVE-2024-42437 2024-08-14 2024-09-04 6.5 - -
CVE-2024-42438 2024-08-14 2024-08-29 6.5 - -
CVE-2024-42440 2024-08-14 2024-08-28 6.2 - -
CVE-2024-42441 2024-08-14 2025-10-02 6.2 - -
CVE-2024-45419 2024-11-19 2025-08-19 8.1 - -
CVE-2024-45420 2024-11-19 2025-08-19 4.3 - -
CVE-2024-45422 2024-11-19 2025-08-19 6.5 - -
CVE-2025-0144 2025-01-30 2025-08-20 3.1 - -
CVE-2025-0145 2025-01-30 2025-08-20 4.6 - -
CVE-2025-0146 2025-01-30 2025-08-01 3.9 - -
CVE-2024-45417 2025-02-25 2025-03-04 6.0 - -
CVE-2024-45418 2025-02-25 2025-03-04 5.4 - -
CVE-2024-45421 2025-02-25 2025-03-05 8.5 - -
CVE-2024-45424 2025-02-25 2025-03-05 5.3 - -
CVE-2024-45425 2025-02-25 2025-03-05 4.9 - -
CVE-2024-45426 2025-02-25 2025-03-04 4.9 - -
CVE-2024-27239 2025-02-25 2025-10-01 4.3 - -
CVE-2024-27245 2025-02-25 2025-08-20 4.3 - -
CVE-2024-27246 2025-02-25 2025-08-20 4.3 - -
CVE-2025-0149 2025-03-11 2025-08-19 6.5 - -
CVE-2025-0151 2025-03-11 2025-10-22 8.5 - -
CVE-2025-27439 2025-03-11 2025-10-22 8.5 - -
CVE-2025-27440 2025-03-11 2025-10-22 8.5 - -
CVE-2025-27441 2025-04-08 2025-10-28 4.6 - -
CVE-2025-27442 2025-04-08 2025-10-28 4.6 - -
CVE-2025-27443 2025-04-08 2025-08-01 2.8 - -
CVE-2025-30670 2025-04-08 2025-08-01 6.5 - -
CVE-2025-30671 2025-04-08 2025-08-01 6.5 - -
CVE-2025-30663 2025-05-14 2025-11-06 8.8 - -
CVE-2025-30664 2025-05-14 2025-11-06 6.6 - -
CVE-2025-30665 2025-05-14 2025-08-05 6.5 - -
CVE-2025-30666 2025-05-14 2025-08-05 6.5 - -
CVE-2025-30667 2025-05-14 2025-11-04 6.5 - -
CVE-2025-30668 2025-05-14 2025-11-04 6.5 - -
CVE-2025-46785 2025-05-14 2025-08-19 6.5 - -
CVE-2025-46786 2025-05-14 2025-11-06 4.3 - -
CVE-2025-49456 2025-08-12 2025-09-08 6.2 - -
CVE-2025-49457 2025-08-12 2025-09-08 9.6 - -
CVE-2025-49458 2025-09-09 2025-10-17 6.5 - -
CVE-2025-49460 2025-09-09 2025-10-17 4.3 - -
CVE-2025-49461 2025-09-09 2025-10-06 4.3 - -
CVE-2025-58134 2025-09-09 2025-10-06 4.3 - -
CVE-2025-58135 2025-09-09 2025-10-06 5.3 - -
CVE-2025-58132 2025-10-15 2025-10-21 4.1 - -
CVE-2025-58133 2025-10-15 2025-10-21 5.3 - -
CVE-2025-62483 2025-11-13 2026-01-13 5.3 - -
CVE-2025-64739 2025-11-13 2026-01-13 4.3 - -
CVE-2025-67460 2025-12-10 2025-12-30 7.8 - -
CVE-2025-67461 2025-12-10 2025-12-30 5.0 - -

How SecUtils Interprets Product Data

SecUtils normalizes and enriches National Vulnerability Database (NVD) records for zoom rooms by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and structuring the data for rapid analysis and asset correlation. For every vulnerability listed, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference information to enable organizations to prioritize patching and risk assessment efficiently. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for vulnerability management and security operations.