ncp-e kayıtları
ncp-e üreticisine ait 9 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-59 Improper Link Resolution Before File Access ('Link Following')5
- CWE-276 Incorrect Default Permissions1
- CWE-345 Insufficient Verification of Data Authenticity1
- CWE-426 Untrusted Search Path1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
9 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2025-26155İstismar yok | NCP Secure Enterprise Client 13.18 and NCP Secure Entry Windows Client 13.19 have an Untrusted Search Path vulnerability.ncp-e · ncp secure entry client · CWE-426 | Kritik9,8 | — | %0,6 | 26 Kas 2025 |
35İzleyin | CVE-2023-28872İstismar yok | Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a syncp-e · secure enterprise client · CWE-59 | Yüksek8,8 | — | %0,8 | 25 Ara 2023 |
32İzleyin | CVE-2023-28868İstismar yok | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to delete arbitrary files on the operating system by creatinncp-e · secure enterprise client · CWE-59 | Yüksek8,1 | — | %0,9 | 9 Ara 2023 |
32İzleyin | CVE-2017-17023İstismar yok | The Sophos UTM VPN endpoint interacts with client software provided by NPC Engineering (www.ncp-e.com).ncp-e · ncp secure entry client · CWE-345 | Yüksek8,1 | — | %0,6 | 9 Nis 2019 |
31İzleyin | CVE-2020-11474İstismar yok | NCP Secure Enterprise Client before 10.15 r47589 allows a symbolic link attack on enumusb.reg via Support Assistant.ncp-e · secure enterprise client · CWE-59 | Yüksek7,8 | — | %0,5 | 28 Tem 2020 |
27İzleyin | CVE-2010-5203İstismar yok | Multiple untrusted search path vulnerabilities in NCP Secure Enterprise Client before 9.21 Build 68, Secure Entry Client before 9.23 Build 1ncp-e · secure client | Orta6,9 | — | %0,3 | 6 Eyl 2012 |
26İzleyin | CVE-2023-28869İstismar yok | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers read the contents of arbitrary files on the operating systemncp-e · secure enterprise client · CWE-59 | Orta6,5 | — | %0,8 | 9 Ara 2023 |
26İzleyin | CVE-2023-28870İstismar yok | Insecure File Permissions in Support Assistant in NCP Secure Enterprise Client before 12.22 allow attackers to write to configuration files ncp-e · secure enterprise client · CWE-276 | Orta6,5 | — | %0,7 | 9 Ara 2023 |
17İzleyin | CVE-2023-28871İstismar yok | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the operating system by creancp-e · secure enterprise client · CWE-59 | Orta4,3 | — | %0,6 | 9 Ara 2023 |
- CVE-2025-2615539İzleyin
NCP Secure Enterprise Client 13.18 and NCP Secure Entry Windows Client 13.19 have an Untrusted Search Path vulnerability.
KritikCVSS 9,8İstismar yokEPSS %1ncp-e · ncp secure entry client26 Kas 2025
- CVE-2023-2887235İzleyin
Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a sy
YüksekCVSS 8,8İstismar yokEPSS %1ncp-e · secure enterprise client25 Ara 2023
- CVE-2023-2886832İzleyin
Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to delete arbitrary files on the operating system by creatin
YüksekCVSS 8,1İstismar yokEPSS %1ncp-e · secure enterprise client9 Ara 2023
- CVE-2017-1702332İzleyin
The Sophos UTM VPN endpoint interacts with client software provided by NPC Engineering (www.ncp-e.com).
YüksekCVSS 8,1İstismar yokEPSS %1ncp-e · ncp secure entry client9 Nis 2019
- CVE-2020-1147431İzleyin
NCP Secure Enterprise Client before 10.15 r47589 allows a symbolic link attack on enumusb.reg via Support Assistant.
YüksekCVSS 7,8İstismar yokEPSS %1ncp-e · secure enterprise client28 Tem 2020
- CVE-2010-520327İzleyin
Multiple untrusted search path vulnerabilities in NCP Secure Enterprise Client before 9.21 Build 68, Secure Entry Client before 9.23 Build 1
OrtaCVSS 6,9İstismar yokEPSS %0ncp-e · secure client6 Eyl 2012
- CVE-2023-2886926İzleyin
Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers read the contents of arbitrary files on the operating system
OrtaCVSS 6,5İstismar yokEPSS %1ncp-e · secure enterprise client9 Ara 2023
- CVE-2023-2887026İzleyin
Insecure File Permissions in Support Assistant in NCP Secure Enterprise Client before 12.22 allow attackers to write to configuration files
OrtaCVSS 6,5İstismar yokEPSS %1ncp-e · secure enterprise client9 Ara 2023
- CVE-2023-2887117İzleyin
Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the operating system by crea
OrtaCVSS 4,3İstismar yokEPSS %1ncp-e · secure enterprise client9 Ara 2023