CVE-2023-28807
EUVD-2023-3244231.01.2024, 20:15
In Zscaler Internet Access (ZIA) a mismatch between Connect Host and Client Hello's Server Name Indication (SNI) enables attackers to evade network security controls by hiding their communications within legitimate traffic.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| zscaler | secure_internet_and_saas_access | 𝑥 < 6.2r.290 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References