Description
In Zscaler Internet Access (ZIA) a mismatch between Connect Host and Client Hello's Server Name Indication (SNI) enables attackers to evade network security controls by hiding their communications within legitimate traffic.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-32442 | In Zscaler Internet Access (ZIA) a mismatch between Connect Host and Client Hello's Server Name Indication (SNI) enables attackers to evade network security controls by hiding their communications within legitimate traffic. |
References
History
Tue, 17 Jun 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Zscaler
Published:
Updated: 2025-06-17T21:29:19.136Z
Reserved: 2023-03-23T18:29:15.803Z
Link: CVE-2023-28807
Updated: 2024-08-02T13:51:38.890Z
Status : Modified
Published: 2024-01-31T20:15:44.903
Modified: 2024-11-21T07:56:03.310
Link: CVE-2023-28807
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD