CVE-2024-23458

CVSS V2 None CVSS V3 None
Description
While copying individual autoupdater log files, reparse point check was missing which could result into crafted attacks, potentially leading to a local privilege escalation. This issue affects Zscaler Client Connector on Windows <4.2.0.190.
Overview
  • CVE ID
  • CVE-2024-23458
  • Assigner
  • Zscaler
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-08-06T15:22:58.963Z
  • Last Modified Date
  • 2024-08-06T18:36:26.478Z
History
Created Old Value New Value Data Type Notes
2024-08-07 13:14:13 Added to TrackCVE