CVE-2023-28869: Ncp-E Secure Enterprise Client

Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.

Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers read the contents of arbitrary files on the operating system by creating a symbolic link.

Affected products

  • Ncp-E Secure Enterprise Client: before 12.22 (fixed in 12.22)

Published 2023-12-09. Last modified 2026-06-17.