CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.4. See the original NVD description below for full technical details.
CVE
CVE-2024-23460
Severity
MEDIUM
CVSS
6.4
EPSS
0.13%
Original NVD Description
The Zscaler Updater process does not validate the digital signature of the installer before execution, allowing arbitrary code to be locally executed. This affects Zscaler Client Connector on MacOS <4.2.
Related CVEs
Other vulnerabilities affecting the same vendor(s)