VYPR

Secure Enterprise Client

by NCP

CVEs (9)

  • CVE-2025-26155CriNov 26, 2025
    risk 0.64cvss 9.8epss 0.01

    NCP Secure Enterprise Client 13.18 and NCP Secure Entry Windows Client 13.19 have an Untrusted Search Path vulnerability.

  • CVE-2023-28872HigDec 25, 2023
    risk 0.57cvss 8.8epss 0.01

    Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a symbolic link from a %LOCALAPPDATA%\Temp\NcpSupport* location.

  • CVE-2023-28868HigDec 9, 2023
    risk 0.53cvss 8.1epss 0.01

    Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to delete arbitrary files on the operating system by creating a symbolic link.

  • CVE-2020-11474HigJul 28, 2020
    risk 0.51cvss 7.8epss 0.01

    NCP Secure Enterprise Client before 10.15 r47589 allows a symbolic link attack on enumusb.reg via Support Assistant.

  • CVE-2023-28871MedDec 9, 2023
    risk 0.28cvss 4.3epss 0.01

    Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the operating system by creating a symbolic link.

  • CVE-2010-5203Sep 6, 2012
    risk 0.00cvss epss 0.00

    Multiple untrusted search path vulnerabilities in NCP Secure Enterprise Client before 9.21 Build 68, Secure Entry Client before 9.23 Build 18, and Secure Client - Juniper Edition before 9.23 Build 18 allow local users to gain privileges via a Trojan horse (1) dvccsabase002.dll,…

  • CVE-2006-3551Jul 13, 2006
    risk 0.00cvss epss 0.00

    NCP Secure Enterprise Client (aka VPN/PKI client) 8.30 Build 59, and possibly earlier versions, when the Link Firewall and Personal Firewall are both configured to block all inbound and outbound network traffic, allows context-dependent attackers to send inbound UDP traffic with…

  • CVE-2006-0964Mar 2, 2006
    risk 0.00cvss epss 0.00

    Client Firewall in NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to bypass firewall program execution rules by replacing an allowed program with an arbitrary program.

  • CVE-2006-0966Mar 2, 2006
    risk 0.00cvss epss 0.00

    NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to cause a denial of service (CPU consumption) via a large number of arguments to ncprwsnt.exe, possibly due to a buffer overflow.