High severity7.8NVD Advisory· Published Jul 15, 2021· Updated Jun 17, 2026
CVE-2020-11634
CVE-2020-11634
Description
The Zscaler Client Connector for Windows prior to 2.1.2.105 had a DLL hijacking vulnerability caused due to the configuration of OpenSSL. A local adversary may be able to execute arbitrary code in the SYSTEM context.
Affected products
3(expand)+ 1 more
- (no CPE)
- cpe:2.3:a:zscaler:client_connector:*:*:*:*:*:windows:*:*range: <2.1.2.105
- Range: <2.1.2.105
Patches
Vulnerability mechanics
References
1- help.zscaler.com/zscaler-client-connector/client-connector-app-release-summary-2020nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.