High severity7.8NVD Advisory· Published May 1, 2024· Updated Jun 17, 2026
CVE-2024-23457
CVE-2024-23457
Description
The anti-tampering functionality of the Zscaler Client Connector can be disabled under certain conditions when an uninstall password is enforced. This affects Zscaler Client Connector on Windows prior to 4.2.0.209
Affected products
3cpe:2.3:a:zscaler:client_connector:*:*:*:*:*:windows:*:*+ 2 more
- cpe:2.3:a:zscaler:client_connector:*:*:*:*:*:windows:*:*range: <4.2.0.209
- (no CPE)range: <4.2.0.209
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- help.zscaler.com/client-connector/client-connector-app-release-summary-2023nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.