CVE 5.2 MEDIUM

Health check port on ZCC allows tunnel bypass_CVE-2025-54983

5.2 / 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N

Description

A health check port on Zscaler Client Connector on Windows, versions 4.6 < 4.6.0.216 and 4.7 < 4.7.0.47, which under specific circumstances was not released after use, allowed traffic to potentially bypass ZCC forwarding controls.

Basic Information

ID CVE-2025-54983
Source Zscaler
Published Nov 12, 2025 at 03:07

Affected Product

Vendor Zscaler
Product Zscaler Client Connector
Version 4.6
Affected Versions Zscaler Zscaler Client Connector 4.6
Zscaler Zscaler Client Connector 4.7

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.