CVE-2025-15641: Netskope Client

Medium severity, CVSS 6.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Netskope was notified about a potential gap in its Netskope Client for Windows systems where a malicious insider with administrative privileges can potentially tamper with the customer IOCTL by sending crafted IOCTL requests to the driver. A successful exploit can result in the bypassing of all anti-tampering protections for the NSClient.Affected Product(s) and Version(s) * Product Name: Netskope Client * Affected Platform: Windows * Affected Version: All version below R138

Affected products

  • Netskope Netskope Client: before 138 (fixed in 138)

Published 2026-06-17. Last modified 2026-10-07.