Vulnerabilidades em Zscaler
52 resultadosAnálise Vexday
Zscaler apresenta 43 vulnerabilidades catalogadas com apenas 2 críticas e nenhuma sob exploração ativa, indicando risco contido. A ausência de divulgações recentes e de ataques em andamento sugere que o portfólio foi estabilizado, embora a fraqueza dominante (CWE-347 - Improper Verification of Cryptographic Signature) permita monitoramento contínuo de possíveis desvios.
CVE-2023-28803MEDIUMTraffic being bypassed by ZCC by configuring synthetic IP range as local networkEPSS 0.3%CVE-2023-28804HIGHLinux ZCC allows unsigned updates, allowing elevated Code ExecutionEPSS 0.2%CVE-2023-41972HIGHRevert password check incorrect type validationEPSS 0.2%CVE-2023-28802MEDIUMDisable Zscaler using machine tunnel restartEPSS 0.2%CVE-2024-23456HIGHSignature validation issue leads to Anti-Tampering bypassEPSS 0.2%CVE-2021-26738HIGHPrivilege Escalation for ZCC macOS via PATH VariableEPSS 0.2%CVE-2021-26736MEDIUMZApp Installer Privilege Escalation VulnerabilitiesEPSS 0.2%CVE-2023-28797MEDIUMLPE using arbitrary file delete with SymlinksEPSS 0.2%CVE-2024-23457HIGHAnti-tampering can be disabled with uninstall password enforcedEPSS 0.2%CVE-2023-28794MEDIUMPAC Files Exposed to Internet WebsitesEPSS 0.2%CVE-2026-22567HIGHZIA Admin UI Input Validation BugEPSS 0.2%CVE-2026-25684MEDIUMFile Type Control rule bypassEPSS 0.2%CVE-2024-23462LOWZCC Mac validinstaller file integrity check missingEPSS 0.2%CVE-2023-28806MEDIUMSignature validation error in DLL allows disabling anti-tampering protectionEPSS 0.2%CVE-2023-41971MEDIUMWindows ZCC Upgrade DoS And Privilege Escalation Through RPC ControlEPSS 0.2%CVE-2023-28796HIGHIPC Bypass Through PLT Section in ELFEPSS 0.2%CVE-2026-22569MEDIUMIncorrect startup configuration in ZCCEPSS 0.2%CVE-2026-59569HIGHAndroid ZCC VPN API method privilege escalationEPSS 0.2%CVE-2026-59566HIGHLocal denial-of-serviceEPSS 0.2%CVE-2026-22568MEDIUMUnauthorized information retrieval in ZIA Admin UIEPSS 0.2%