CVE-2025-15642: Netskope Client

Medium severity, CVSS 6.8. EPSS: 0.1% chance of exploitation in the next 30 days.

Netskope is notified about a potential gap in its Netskoped Client for Windows systems where a malicious insider with admin privileges can lead to bypassing the NSClient Tamper Protections due to weak Discretionary Access Control List (DACLs) on the service object and related registry keys,. * Product Name: Netskope Client * Affected Platform: Windows * Affected Version: All version below R138

Affected products

  • Netskope Netskope Client: before 138 (fixed in 138)

Published 2026-06-17. Last modified 2026-10-07.