CVE-2020-11634: Zscaler Client Connector

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

The Zscaler Client Connector for Windows prior to 2.1.2.105 had a DLL hijacking vulnerability caused due to the configuration of OpenSSL. A local adversary may be able to execute arbitrary code in the SYSTEM context.

Affected products

  • Zscaler Client Connector: before 2.1.2.105 (fixed in 2.1.2.105)

Published 2021-07-15. Last modified 2026-06-17.