CVE-2023-41969: Zscaler Client Connector

High severity, CVSS 7.1. EPSS: 0.3% chance of exploitation in the next 30 days.

An arbitrary file deletion in ZSATrayManager where it protects the temporary encrypted ZApp issue reporting file from the unprivileged end user access and modification. Fixed version: Win ZApp 4.3.0 and later.

Affected products

  • Zscaler Client Connector: before 4.3 (fixed in 4.3)

Published 2024-03-26. Last modified 2026-06-17.