Vulnerability Description
An arbitrary file deletion in ZSATrayManager where it protects the temporary encrypted ZApp issue reporting file from the unprivileged end user access and modification. Fixed version: Win ZApp 4.3.0 and later.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zscaler | Client Connector | < 4.3 |
Related Weaknesses (CWE)
References
- https://help.zscaler.com/client-connector/client-connector-app-release-summary-2Release Notes
- https://help.zscaler.com/client-connector/client-connector-app-release-summary-2Release Notes
FAQ
What is CVE-2023-41969?
CVE-2023-41969 is a vulnerability with a CVSS score of 7.3 (HIGH). An arbitrary file deletion in ZSATrayManager where it protects the temporary encrypted ZApp issue reporting file from the unprivileged end user access and modification. Fixed version: Win ZApp 4.3.0 a...
How severe is CVE-2023-41969?
CVE-2023-41969 has been rated HIGH with a CVSS base score of 7.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-41969?
Check the references section above for vendor advisories and patch information. Affected products include: Zscaler Client Connector.