CVE-2023-41972

In some rare cases, there is a password type validation missing in Revert Password check and for some features it could be disabled. Fixed Version: Win ZApp 4.3.0.121 and later.
Configurations

No configuration.

History

21 Nov 2024, 08:22

Type Values Removed Values Added
References () https://help.zscaler.com/client-connector/client-connector-app-release-summary-2023?applicable_category=Windows&applicable_version=4.3.0.121&deployment_date=2023-09-01&id=1463196 - () https://help.zscaler.com/client-connector/client-connector-app-release-summary-2023?applicable_category=Windows&applicable_version=4.3.0.121&deployment_date=2023-09-01&id=1463196 -

17 Oct 2024, 16:15

Type Values Removed Values Added
CWE CWE-269 CWE-280
Summary
  • (es) En algunos casos excepcionales, falta una validación del tipo de contraseña en la verificación de revertir contraseña y, para algunas funciones, podría estar deshabilitada. Versión fija: Win ZApp 4.3.0.121 y posteriores.

26 Mar 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-26 15:15

Updated : 2024-11-21 08:22


NVD link : CVE-2023-41972

Mitre link : CVE-2023-41972

CVE.ORG link : CVE-2023-41972


JSON object : View

Products Affected

No product.

CWE
CWE-280

Improper Handling of Insufficient Permissions or Privileges