CVE-2023-41969: ZSATrayManager Arbitrary File Deletion
Published Mar 26, 2024
·Updated
An arbitrary file deletion in ZSATrayManager where it protects the temporary encrypted ZApp issue reporting file from the unprivileged end user access and modification. Fixed version: Win ZApp 4.3.0 and later.
Affected Software
2 affected components
ZSATrayManager ZApp<4.3.0
Zscaler Client Connector Windows<4.3
Event History
Mar 26, 2024
CVE Published
via MITRE·02:14 PM
Data Sourced
via MITRE·02:14 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-41969?
CVE-2023-41969 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2023-41969?
To fix CVE-2023-41969, upgrade to ZApp version 4.3.0 or later.
3
What software is affected by CVE-2023-41969?
CVE-2023-41969 affects ZSATrayManager versions prior to 4.3.0.
4
What type of vulnerability is CVE-2023-41969?
CVE-2023-41969 is an arbitrary file deletion vulnerability.
5
Can unprivileged users exploit CVE-2023-41969?
Yes, unprivileged end users can exploit the arbitrary file deletion in CVE-2023-41969.