The Zscaler Client Connector for Windows prior to 2.1.2.74 had a stack based buffer overflow when connecting to misconfigured TLS servers. An adversary would potentially have been able to execute arbitrary code with system privileges.
References
Configurations
Information
Published : 2021-07-15 11:15
Updated : 2021-07-27 08:24
NVD link : CVE-2020-11633
Mitre link : CVE-2020-11633
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
zscaler
- client_connector