Anti-tampering can be disabled with uninstall password enforced
Vulnerability Description
The anti-tampering functionality of the Zscaler Client Connector can be disabled under certain conditions when an uninstall password is enforced. This affects Zscaler Client Connector on Windows prior to 4.2.0.209
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-23457
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Westpac Red Team
More from Zscaler
View All →Affected Vendor
Zscaler
View all reports →