Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers read the contents of arbitrary files on the operating system by creating a symbolic link.
2023-12-09T07:15:07.263
2024-11-21T07:56:11.830
Modified
CVSSv3.1: 6.5 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | ncp-e | secure_enterprise_client | < 12.22 | Yes |