zscaler News Articles

Recent news articles refferecing the vendors vulnerabilities.

CVE-2025-54982: CWE-347 Improper Verification of Cryptographic Signature in Zscaler Authentication Server - Live Threat Intelligence - Threat Radar | OffSeq.com

Detailed information about CVE-2025-54982: CWE-347 Improper Verification of Cryptographic Signature in Zscaler Authentication Server affecting Zscaler Authentic

2 weeks ago

CVE-2025-54982 – CVE Details | CVETodo

An improper verification of cryptographic signature in Zscaler's SAML authentication mechanism on the server-side allowed an authentication abuse.

3 weeks ago

CVE-2025-54982 Zscaler Authentication Server SAML Authentication signature verification

A vulnerability was found in Zscaler Authentication Server. It has been rated as critical. The identification of this vulnerability is CVE-2025-54982. It is recommended to upgrade the affected component.

3 weeks ago

Threat Intel Roundup: glibc, Anatsa, iconv, NahamCon – Threat Radar Intelligence

admin May 28, 2024 No Comments Technical Summary Zero-Interaction Local Privilege Escalation in...

Fix these critical vulnerabilities in Zscaler Client Connector

Critical vulnerabilities in Zscaler Client Connector allows privilege escalation to NT AUTHORITYSYSTEM. Here's what you need to know.

Zscaler Client Connector Zero-interaction Privilege Escalation Vulnerability

A new privilege escalation vulnerability has been discovered in Zscaler Client Connector which involves combining three different

Cache Me If You Can: Local Privilege Escalation in Zscaler Client Connector (CVE-2023-41973)

A couple months ago, my colleague Winston Ho and I chained a series of unfortunate bugs into a zero-interaction local privilege escalation in Zscaler Client Connector. This was an interesting journey into Windows RPC caller validation and bypassing several checks, including Authenticode verification...

No more news articles to load.