CVE-2020-11474: High severity ncp-e secure enterprise client vulnerability
Published Jul 28, 2020
·Updated
NCP Secure Enterprise Client before 10.15 r47589 allows a symbolic link attack on enumusb.reg via Support Assistant.
Affected Software
1 affected component
ncp-e Secure Enterprise Client<=10.15
Event History
Jul 28, 2020
CVE Published
via MITRE·08:34 PM
Data Sourced
via MITRE·08:34 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this NCP Secure Enterprise Client vulnerability?
The vulnerability ID for this NCP Secure Enterprise Client vulnerability is CVE-2020-11474.
2
What is the severity of CVE-2020-11474?
The severity of CVE-2020-11474 is high.
3
What is the affected software for CVE-2020-11474?
The affected software for CVE-2020-11474 is NCP Secure Enterprise Client version up to and including 10.15.
4
What is the CWE ID for CVE-2020-11474?
The CWE ID for CVE-2020-11474 is 59.
5
How can I mitigate the vulnerability in NCP Secure Enterprise Client?
To mitigate the vulnerability in NCP Secure Enterprise Client, update to version 10.15 r47589 or later.