Записи ncp-e
9 опубликованных записей вендора ncp-e.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-59 Improper Link Resolution Before File Access ('Link Following')5
- CWE-276 Incorrect Default Permissions1
- CWE-345 Insufficient Verification of Data Authenticity1
- CWE-426 Untrusted Search Path1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2025-26155Эксплойта нет | NCP Secure Enterprise Client 13.18 and NCP Secure Entry Windows Client 13.19 have an Untrusted Search Path vulnerability.ncp-e · ncp secure entry client · CWE-426 | Критическая9,8 | — | 0,6 % | 26 нояб. 2025 г. |
35Наблюдать | CVE-2023-28872Эксплойта нет | Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a syncp-e · secure enterprise client · CWE-59 | Высокая8,8 | — | 0,8 % | 25 дек. 2023 г. |
32Наблюдать | CVE-2023-28868Эксплойта нет | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to delete arbitrary files on the operating system by creatinncp-e · secure enterprise client · CWE-59 | Высокая8,1 | — | 0,9 % | 9 дек. 2023 г. |
32Наблюдать | CVE-2017-17023Эксплойта нет | The Sophos UTM VPN endpoint interacts with client software provided by NPC Engineering (www.ncp-e.com).ncp-e · ncp secure entry client · CWE-345 | Высокая8,1 | — | 0,6 % | 9 апр. 2019 г. |
31Наблюдать | CVE-2020-11474Эксплойта нет | NCP Secure Enterprise Client before 10.15 r47589 allows a symbolic link attack on enumusb.reg via Support Assistant.ncp-e · secure enterprise client · CWE-59 | Высокая7,8 | — | 0,5 % | 28 июл. 2020 г. |
27Наблюдать | CVE-2010-5203Эксплойта нет | Multiple untrusted search path vulnerabilities in NCP Secure Enterprise Client before 9.21 Build 68, Secure Entry Client before 9.23 Build 1ncp-e · secure client | Средняя6,9 | — | 0,3 % | 6 сент. 2012 г. |
26Наблюдать | CVE-2023-28869Эксплойта нет | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers read the contents of arbitrary files on the operating systemncp-e · secure enterprise client · CWE-59 | Средняя6,5 | — | 0,8 % | 9 дек. 2023 г. |
26Наблюдать | CVE-2023-28870Эксплойта нет | Insecure File Permissions in Support Assistant in NCP Secure Enterprise Client before 12.22 allow attackers to write to configuration files ncp-e · secure enterprise client · CWE-276 | Средняя6,5 | — | 0,7 % | 9 дек. 2023 г. |
17Наблюдать | CVE-2023-28871Эксплойта нет | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the operating system by creancp-e · secure enterprise client · CWE-59 | Средняя4,3 | — | 0,6 % | 9 дек. 2023 г. |
- CVE-2025-2615539Наблюдать
NCP Secure Enterprise Client 13.18 and NCP Secure Entry Windows Client 13.19 have an Untrusted Search Path vulnerability.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %ncp-e · ncp secure entry client26 нояб. 2025 г.
- CVE-2023-2887235Наблюдать
Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a sy
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %ncp-e · secure enterprise client25 дек. 2023 г.
- CVE-2023-2886832Наблюдать
Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to delete arbitrary files on the operating system by creatin
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %ncp-e · secure enterprise client9 дек. 2023 г.
- CVE-2017-1702332Наблюдать
The Sophos UTM VPN endpoint interacts with client software provided by NPC Engineering (www.ncp-e.com).
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %ncp-e · ncp secure entry client9 апр. 2019 г.
- CVE-2020-1147431Наблюдать
NCP Secure Enterprise Client before 10.15 r47589 allows a symbolic link attack on enumusb.reg via Support Assistant.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %ncp-e · secure enterprise client28 июл. 2020 г.
- CVE-2010-520327Наблюдать
Multiple untrusted search path vulnerabilities in NCP Secure Enterprise Client before 9.21 Build 68, Secure Entry Client before 9.23 Build 1
СредняяCVSS 6,9Эксплойта нетEPSS 0 %ncp-e · secure client6 сент. 2012 г.
- CVE-2023-2886926Наблюдать
Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers read the contents of arbitrary files on the operating system
СредняяCVSS 6,5Эксплойта нетEPSS 1 %ncp-e · secure enterprise client9 дек. 2023 г.
- CVE-2023-2887026Наблюдать
Insecure File Permissions in Support Assistant in NCP Secure Enterprise Client before 12.22 allow attackers to write to configuration files
СредняяCVSS 6,5Эксплойта нетEPSS 1 %ncp-e · secure enterprise client9 дек. 2023 г.
- CVE-2023-2887117Наблюдать
Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the operating system by crea
СредняяCVSS 4,3Эксплойта нетEPSS 1 %ncp-e · secure enterprise client9 дек. 2023 г.