CVE-2024-23457

T

he anti-tampering functionality of the Zscaler Client Connector can be disabled under certain conditions when an uninstall password is enforced. This affects Zscaler Client Connector on Windows prior to 4.2.0.209

Configurations

Configuration 1 (hide)

cpe:2.3:a:zscaler:client_connector:*:*:*:*:*:windows:*:*

History

02 Mar 2026, 19:18

Type Values Removed Values Added
CPE cpe:2.3:a:zscaler:client_connector:*:*:*:*:*:windows:*:*
References () https://help.zscaler.com/client-connector/client-connector-app-release-summary-2023 - () https://help.zscaler.com/client-connector/client-connector-app-release-summary-2023 - Vendor Advisory, Release Notes
First Time Zscaler
Zscaler client Connector

21 Nov 2024, 08:57

Type Values Removed Values Added
References () https://help.zscaler.com/client-connector/client-connector-app-release-summary-2023 - () https://help.zscaler.com/client-connector/client-connector-app-release-summary-2023 -

01 May 2024, 19:50

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-01 17:15

Updated : 2026-03-02 19:18


NVD link : CVE-2024-23457

Mitre link : CVE-2024-23457

CVE.ORG link : CVE-2024-23457


JSON object : View

Products Affected
CWE
CWE-269

Improper Privilege Management