Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a symbolic link from a %LOCALAPPDATA%\Temp\NcpSupport* location.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://herolab.usd.de/en/security-advisories/usd-2022-0006/ |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-12-25T00:00:00
Updated: 2024-08-27T20:03:32.773Z
Reserved: 2023-03-27T00:00:00
Link: CVE-2023-28872
Vulnrichment
Updated: 2024-08-02T13:51:38.938Z
NVD
Status : Modified
Published: 2023-12-25T07:15:07.893
Modified: 2024-11-21T07:56:12.233
Link: CVE-2023-28872
Redhat
No data.