Zscaler Client Connector Installer on Windows before version 3.4.0.124 improperly handled directory junctions during uninstallation. A local adversary may be able to delete folders in an elevated context.





Advisories
Source ID Title
EUVD EUVD EUVD-2021-13521 Zscaler Client Connector Installer on Windows before version 3.4.0.124 improperly handled directory junctions during uninstallation. A local adversary may be able to delete folders in an elevated context.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 18 Sep 2024 08:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Zscaler

Published:

Updated: 2024-09-17T13:46:22.720Z

Reserved: 2021-02-05T20:34:27.823Z

Link: CVE-2021-26734

cve-icon Vulnrichment

Updated: 2024-08-03T20:33:40.861Z

cve-icon NVD

Status : Modified

Published: 2023-10-23T14:15:08.927

Modified: 2024-11-21T05:56:46.477

Link: CVE-2021-26734

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.