An arbitrary file deletion in ZSATrayManager where it protects the temporary encrypted ZApp issue reporting file from the unprivileged end user access and modification. Fixed version: Win ZApp 4.3.0 and later.
History

Thu, 17 Oct 2024 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Zscaler
Zscaler client Connector
CPEs cpe:2.3:a:zscaler:client_connector:*:*:*:*:*:*:*:*
Vendors & Products Zscaler
Zscaler client Connector
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 17 Oct 2024 15:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-59

Thu, 17 Oct 2024 15:15:00 +0000

Type Values Removed Values Added
Description An arbitrary file deletion in ZSATrayManager where it protects the temporary encrypted ZApp issue reporting file from the unprivileged end user access and modification. Fixed version: Win ZApp 4.3.0 and later. An arbitrary file deletion in ZSATrayManager where it protects the temporary encrypted ZApp issue reporting file from the unprivileged end user access and modification. Fixed version: Win ZApp 4.3.0 and later.
Weaknesses CWE-61

cve-icon MITRE

Status: PUBLISHED

Assigner: Zscaler

Published: 2024-03-26T14:14:21.872Z

Updated: 2024-10-17T15:11:15.463Z

Reserved: 2023-09-06T17:14:12.958Z

Link: CVE-2023-41969

cve-icon Vulnrichment

Updated: 2024-08-02T19:09:49.353Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-03-26T15:15:48.203

Modified: 2024-11-21T08:22:00.960

Link: CVE-2023-41969

cve-icon Redhat

No data.