CVE-2024-23458
EUVD-2024-2095606.08.2024, 16:15
While copying individual autoupdater log files, reparse point check was missing which could result into crafted attacks, potentially leading to a local privilege escalation. This issue affects Zscaler Client Connector on Windows <4.2.0.190.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| zscaler | client_connector | 𝑥 < 4.2.0.190 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration