在受影响版本的 Windows 平台 Zscaler Client Connector 中,存在一个可通过远程利用的缓冲区溢出漏洞,可能导致本地及内核级的拒绝服务(DoS)攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Zscaler | Client Connector | < Windows: 4.6.0.457, 4.7.0.317, 4.8.0.232, 4.9.0.372 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Zscaler | Client Connector | 0 ~ Windows: 4.6.0.457, 4.7.0.317, 4.8.0.232, 4.9.0.372 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-59564 | 9.1 CRITICAL | Authentication bypass between ZCC and client connector portal |
| CVE-2026-59568 | 9.1 CRITICAL | Remote Code Execution |
| CVE-2026-59567 | 8.8 HIGH | Local privilege escalation |
| CVE-2026-59566 | 8.4 HIGH | Local denial-of-service |
No comments yet