CVE-2024-23460
The Zscaler Updater process does not validate the digital signature of the installer before execution, allowing arbitrar
The Zscaler Updater process does not validate the digital signature of the installer before execution, allowing arbitrary code to be locally executed. This affects Zscaler Client Connector on MacOS <4.2.
MEDIUM · CVSS 6.4
EPSS 0.00027
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0