Zscaler Client Connector for Android

CPE Details

Zscaler Client Connector for Android
-
2023-06-30
12h52 +00:00
2023-06-30
14h38 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:zscaler:client_connector:-:*:*:*:*:android:*:*

Informations

Vendor

zscaler

Product

client_connector

Version

-

Target Software

android

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-28800 2023-06-22 19h15 +00:00 When using local accounts for administration, the redirect url parameter was not encoded correctly, allowing for an XSS attack providing admin login.
8.1
High
CVE-2023-28799 2023-06-22 19h06 +00:00 A URL parameter during login flow was vulnerable to injection. An attacker could insert a malicious domain in this parameter, which would redirect the user after auth and send the authorization token to the redirected domain.
8.2
High