CVE-2024-23457: Zscaler Client Connector

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

The anti-tampering functionality of the Zscaler Client Connector can be disabled under certain conditions when an uninstall password is enforced. This affects Zscaler Client Connector on Windows prior to 4.2.0.209

Affected products

  • Zscaler Client Connector: before 4.2.0.209 (fixed in 4.2.0.209)

Published 2024-05-01. Last modified 2026-06-17.