TROYANOSYVIRUS
Back to CVEs

CVE-2024-23457

HIGH
7.8

Description

The anti-tampering functionality of the Zscaler Client Connector can be disabled under certain conditions when an uninstall password is enforced. This affects Zscaler Client Connector on Windows prior to 4.2.0.209

CVE Details

CVSS v3.1 Score7.8
SeverityHIGH
CVSS VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack VectorLOCAL
ComplexityLOW
Privileges RequiredLOW
User InteractionNONE
Published5/1/2024
Last Modified3/2/2026
Sourcenvd
Honeypot Sightings0

Affected Products

zscaler:client_connector

Weaknesses (CWE)

CWE-269

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.