Total vulnerabilities in the database
When using local accounts for administration, the redirect url parameter was not encoded correctly, allowing for an XSS attack providing admin login.
Software | From | Fixed in |
---|---|---|
zscaler / client_connector | - | 3.7 |
zscaler / client_connector | - | 1.4 |
zscaler / client_connector | - | 1.10.2 |
zscaler / client_connector | - | 1.10.1 |
zscaler / client_connector | - | 1.9.3 |
zscaler / client_connector | - | 3.9 |