CVE-2023-28871: Ncp-E Secure Enterprise Client

Medium severity, CVSS 4.3. EPSS: 0.6% chance of exploitation in the next 30 days.

Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the operating system by creating a symbolic link.

Affected products

  • Ncp-E Secure Enterprise Client: before 12.22 (fixed in 12.22)

Published 2023-12-09. Last modified 2026-06-17.