First published: Tue Aug 06 2024(Updated: )
In certain cases, Zscaler Internet Access (ZIA) can be disabled by PowerShell commands with admin rights. This affects Zscaler Client Connector on Windows <4.2.1
Credit: cve@zscaler.com
Affected Software | Affected Version | How to fix |
---|---|---|
Zscaler Client Connector for Windows | <4.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-23464 is considered a critical vulnerability due to its potential to disable Zscaler Internet Access.
To fix CVE-2024-23464, upgrade Zscaler Client Connector to version 4.2.1 or later.
CVE-2024-23464 affects Zscaler Client Connector on Windows versions prior to 4.2.1.
CVE-2024-23464 can be exploited using PowerShell commands executed with admin rights.
Currently, there are no known workarounds for CVE-2024-23464 other than applying the required updates.