In Zscaler Internet Access (ZIA) a mismatch between Connect Host and Client Hello's Server Name Indication (SNI) enables attackers to evade network security controls by hiding their communications within legitimate traffic.
2024-01-31T20:15:44.903
2024-11-21T07:56:03.310
Modified
CVSSv3.1: 5.1 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | zscaler | secure_internet_and_saas_access | < 6.2r.290 | Yes |