CVE-2023-28872: High severity ncp-e secure enterprise client vulnerability
Published Dec 25, 2023
·Updated
Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a symbolic link from a %LOCALAPPDATA%\Temp\NcpSupport location.
Affected Software
1 affected component
ncp-e Secure Enterprise Client<13.10
Event History
Dec 25, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-28872?
CVE-2023-28872 is considered high severity due to the potential for attackers to execute arbitrary code with SYSTEM privileges.
2
How do I fix CVE-2023-28872?
To mitigate CVE-2023-28872, update the NCP Secure Enterprise Client to version 13.10 or later.
3
What type of attack does CVE-2023-28872 enable?
CVE-2023-28872 enables attackers to execute DLL files by leveraging symbolic link manipulation.
4
What impact does CVE-2023-28872 have on system security?
CVE-2023-28872 can lead to unauthorized access and control over the affected system due to elevated privileges.
5
Is CVE-2023-28872 exploitable remotely?
The CVE-2023-28872 vulnerability requires local access to exploit, making it less likely to be exploited remotely.