NA

CVE-2023-28872

Published: 25/12/2023 Updated: 03/01/2024
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Support Assistant in NCP Secure Enterprise Client prior to 13.10 allows malicious users to execute DLL files with SYSTEM privileges by creating a symbolic link from a %LOCALAPPDATA%\Temp\NcpSupport* location.

Vulnerable Product Search on Vulmon Subscribe to Product

ncp-e secure enterprise client