Vulnerabilities (CVE)

Filtered by CWE-347
Total 543 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-23456 1 Zscaler 1 Client Connector 2024-08-07 N/A 7.8 HIGH
Anti-tampering can be disabled under certain conditions without signature validation. This affects Zscaler Client Connector <4.2.0.190 with anti-tampering enabled.
CVE-2023-28806 1 Zscaler 1 Client Connector 2024-08-07 N/A 5.7 MEDIUM
An Improper Validation of signature in Zscaler Client Connector on Windows allows an authenticated user to disable anti-tampering. This issue affects Client Connector on Windows <4.2.0.190.
CVE-2024-23460 1 Zscaler 1 Client Connector 2024-08-07 N/A 6.4 MEDIUM
The Zscaler Updater process does not validate the digital signature of the installer before execution, allowing arbitrary code to be locally executed. This affects Zscaler Client Connector on MacOS <4.2.