ZeroHour

Vulnerabilities

46 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2026-22569
An incorrect startup configuration of affected versions of Zscaler Client Connector on Windows may cause a limited amount of traffic from being inspected under

An incorrect startup configuration of affected versions of Zscaler Client Connector on Windows may cause a limited amount of traffic from being inspected under rare circumstances.

NVD description · AI analysis pending
5.3<1%
  • zscaler client connector
CVE-2026-22567
+1 in the same advisory: …22568
Improper validation of user-supplied input in the ZIA Admin UI could allow an authenticated administrator to initiate backend functions through specific input f

Improper validation of user-supplied input in the ZIA Admin UI could allow an authenticated administrator to initiate backend functions through specific input fields in limited scenarios.

NVD description · AI analysis pending
2.7<1%
  • zscaler zscaler internet access admin portal
CVE-2024-23483
An Improper Input Validation vulnerability in Zscaler Client Connector on MacOS allows OS Command Injection.

An Improper Input Validation vulnerability in Zscaler Client Connector on MacOS allows OS Command Injection. This issue affects Zscaler Client Connector on MacOS <4.2.

NVD description · AI analysis pending
9.8
group max
<1%
  • zscaler client connector
CVE-2024-3661
DHCP can add routes to a client’s routing table via the classless static route option (121).

DHCP can add routes to a client’s routing table via the classless static route option (121). VPN-based security solutions that rely on routes to redirect traffic can be forced to leak traffic over the physical interface. An attacker on the same local network can read, disrupt, or possibly modify network traffic that was expected to be protected by the VPN.

NVD description · AI analysis pending
7.64% PoC ×5
  • fortinet forticlient
  • fortinet anyconnect vpn client
  • fortinet secure client
  • +1 more
CVE-2024-23459
An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client Connector on Mac allows a system file to be overwritten.This i

An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client Connector on Mac allows a system file to be overwritten.This issue affects Zscaler Client Connector on Mac : before 3.7.

NVD description · AI analysis pending
9.8
group max
<1%
  • zscaler client connector
CVE-2024-23480
+1 in the same advisory: …23457
A fallback mechanism in code sign checking on macOS may allow arbitrary code execution.

A fallback mechanism in code sign checking on macOS may allow arbitrary code execution. This issue affects Zscaler Client Connector on MacOS prior to 4.2.

NVD description · AI analysis pending
9.8
group max
<1%
  • zscaler client connector
CVE-2024-23463
Anti-tampering protection of the Zscaler Client Connector can be bypassed under certain conditions when running the Repair App functionality.

Anti-tampering protection of the Zscaler Client Connector can be bypassed under certain conditions when running the Repair App functionality. This affects Zscaler Client Connector on Windows prior to 4.2.1

NVD description · AI analysis pending
8.1<1%
  • zscaler client connector
CVE-2023-41973
+3 in the same advisory: …23482 …41972 …41969
ZSATray passes the previousInstallerName as a config parameter to TrayManager, and TrayManager constructs the path and appends previousInstallerName to get the

ZSATray passes the previousInstallerName as a config parameter to TrayManager, and TrayManager constructs the path and appends previousInstallerName to get the full path of the exe. Fixed Version: Win ZApp 4.3.0.121 and later.

NVD description · AI analysis pending
7.8
group max
<1%
  • zscaler client connector
CVE-2023-28807
In Zscaler Internet Access (ZIA) a mismatch between Connect Host and Client Hello's Server Name Indication (SNI) enables attackers to evade network security con

In Zscaler Internet Access (ZIA) a mismatch between Connect Host and Client Hello's Server Name Indication (SNI) enables attackers to evade network security controls by hiding their communications within legitimate traffic.

NVD description · AI analysis pending
7.5<1%
  • zscaler secure internet and saas access
CVE-2023-28802
An Improper Validation of Integrity Check Value in Zscaler Client Connector on Windows allows an authenticated user to disable ZIA/ZPA by interrupting the servi

An Improper Validation of Integrity Check Value in Zscaler Client Connector on Windows allows an authenticated user to disable ZIA/ZPA by interrupting the service restart from Zscaler Diagnostics. This issue affects Client Connector: before 4.2.0.149.

NVD description · AI analysis pending
5.4<1%
  • zscaler client connector
CVE-2023-28794
Origin Validation Error vulnerability in Zscaler Client Connector on Linux allows Privilege Abuse.

Origin Validation Error vulnerability in Zscaler Client Connector on Linux allows Privilege Abuse. This issue affects Zscaler Client Connector for Linux: before 1.3.1.6.

NVD description · AI analysis pending
6.5<1%
  • zscaler client connector
CVE-2023-28805
An Improper Input Validation vulnerability in Zscaler Client Connector on Linux allows Privilege Escalation.

An Improper Input Validation vulnerability in Zscaler Client Connector on Linux allows Privilege Escalation. This issue affects Client Connector: before 1.4.0.105

NVD description · AI analysis pending
9.8
group max
<1%
  • zscaler client connector
CVE-2023-41717
Inappropriate file type control in Zscaler Proxy versions 3.6.1.25 and prior allows local attackers to bypass file download/upload restrictions.

Inappropriate file type control in Zscaler Proxy versions 3.6.1.25 and prior allows local attackers to bypass file download/upload restrictions.

NVD description · AI analysis pending
5.5<1% PoC
  • zscaler zscaler proxy
CVE-2023-28801
An Improper Verification of Cryptographic Signature in the SAML authentication of the Zscaler Admin UI allows a Privilege Escalation.This issue affects Admin UI:

An Improper Verification of Cryptographic Signature in the SAML authentication of the Zscaler Admin UI allows a Privilege Escalation.This issue affects Admin UI: from 6.2 before 6.2r.

NVD description · AI analysis pending
9.8<1%
  • zscaler zscaler internet access admin portal
CVE-2023-28800
+1 in the same advisory: …28799
When using local accounts for administration, the redirect url parameter was not encoded correctly, allowing for an XSS attack providing admin login.

When using local accounts for administration, the redirect url parameter was not encoded correctly, allowing for an XSS attack providing admin login.

NVD description · AI analysis pending
6.1<1%
  • zscaler client connector
CVE-2020-11633
+2 in the same advisory: …11634 …11632
The Zscaler Client Connector for Windows prior to 2.1.2.74 had a stack based buffer overflow when connecting to misconfigured TLS servers.

The Zscaler Client Connector for Windows prior to 2.1.2.74 had a stack based buffer overflow when connecting to misconfigured TLS servers. An adversary would potentially have been able to execute arbitrary code with system privileges.

NVD description · AI analysis pending
9.8
group max
2%
  • zscaler client connector
CVE-2020-11635
The Zscaler Client Connector prior to 3.1.0 did not sufficiently validate RPC clients, which allows a local adversary to execute code with system privileges or

The Zscaler Client Connector prior to 3.1.0 did not sufficiently validate RPC clients, which allows a local adversary to execute code with system privileges or perform limited actions for which they did not have privileges.

NVD description · AI analysis pending
7.8<1%
  • zscaler client connector