CVE Tools

Ncp-e

5 CVEs tracked since 2023. Since Dec 2023, none of them reached CISA KEV.

Ncp-e CVEs per month

Dec 2023 to Dec 2023. Point at a month, or focus the strip and use the arrow keys.
Ncp-e CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2023-1250

Products

The products that kept showing up in Ncp-e's monthly top three, with their CVEs summed over those months.

  1. Secure Enterprise Client51 month

Latest CVEs

The 10 most recently published vulnerabilities affecting Ncp-e.

  1. CVE-2019-25281NCP_Secure_Entry_Client 9.2 - Unquoted Service Paths7.8
  2. CVE-2025-26155NCP Secure Enterprise Client 13.18 and NCP Secure Entry Windows Client 13.19 have an Untrusted Search Path vulnerability.9.8
  3. CVE-2023-28872Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a symbolic link from a %LOCALAPPDATA%\Temp\NcpSupport* location.8.8
  4. CVE-2023-28871Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the operating system by creating a symbolic link.4.3
  5. CVE-2023-28868Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to delete arbitrary files on the operating system by creating a symbolic link.8.1
  6. CVE-2023-28870Insecure File Permissions in Support Assistant in NCP Secure Enterprise Client before 12.22 allow attackers to write to configuration files from low-privileged user accounts.6.5
  7. CVE-2023-28869Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers read the contents of arbitrary files on the operating system by creating a symbolic link.6.5
  8. CVE-2020-11474NCP Secure Enterprise Client before 10.15 r47589 allows a symbolic link attack on enumusb.reg via Support Assistant.7.8
  9. CVE-2017-17023The Sophos UTM VPN endpoint interacts with client software provided by NPC Engineering (www.ncp-e.com). The affected client software, "Sophos IPSec Client" 11.04 is a rebranded version of NCP "Secu...8.1
  10. CVE-2010-5203Multiple untrusted search path vulnerabilities in NCP Secure Enterprise Client before 9.21 Build 68, Secure Entry Client before 9.23 Build 18, and Secure Client - Juniper Edition before 9.23 Build ...6.9

The record

Peak rank
#148 in Dec 2023
Busiest month shown
Dec 2023, 5 CVEs
Months with a KEV entry
0 since Dec 2023
Monthly snapshots
1 since 2023
Ncp-e's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store