Symbolic Link Vulnerability in NCP Secure Enterprise Client
CVE-2020-11474

7.8HIGH

Key Information:

Vendor

Ncp-e

Vendor
CVE Published:
28 July 2020

What is CVE-2020-11474?

The NCP Secure Enterprise Client before version 10.15 r47589 is susceptible to a symbolic link attack that affects the enumusb.reg file through the Support Assistant feature. This security flaw could potentially allow unauthorized manipulation of the system, leading to various risks including data integrity issues and system instability. It is crucial for users to upgrade to the latest version to mitigate the threats associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.