CVE-2024-23483: OS Command Injection
Published Aug 6, 2024
·Updated
An Improper Input Validation vulnerability in Zscaler Client Connector on MacOS allows OS Command Injection. This issue affects Zscaler Client Connector on MacOS <4.2.
Affected Software
1 affected component
Zscaler Client Connector Macos<4.2
Event History
Aug 6, 2024
CVE Published
via NVD·04:15 PM
Frequently Asked Questions
1
What is the severity of CVE-2024-23483?
CVE-2024-23483 has been classified as a high severity vulnerability due to its potential for OS command injection.
2
How do I fix CVE-2024-23483?
To fix CVE-2024-23483, upgrade Zscaler Client Connector on MacOS to version 4.2 or later.
3
What systems are affected by CVE-2024-23483?
CVE-2024-23483 affects Zscaler Client Connector on MacOS versions lower than 4.2.
4
What type of vulnerability is CVE-2024-23483?
CVE-2024-23483 is an Improper Input Validation vulnerability allowing OS Command Injection.
5
Can CVE-2024-23483 be exploited remotely?
Yes, CVE-2024-23483 can potentially be exploited remotely due to its nature of OS command injection.