Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2965▲ 27 respecto a la semana anterior
Críticas / altas1456▲ 193 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)272▼ 254 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Crítica (9.8) | 0.57% | — | Ncp-e NCP Secure Entry ClientNcp-e Secure Enterprise Client | 26/11/2025 | 17/6/2026 | NCP Secure Enterprise Client 13.18 and NCP Secure Entry Windows Client 13.19 have an Untrusted Search Path vulnerability. | |
| Modificada | Alta (8.8) | 0.77% | — | Ncp-e Secure Enterprise Client | 25/12/2023 | 17/6/2026 | Support Assistant in NCP Secure Enterprise Client before 13.10 allows attackers to execute DLL files with SYSTEM privileges by creating a symbolic link from a %LOCALAPPDATA%\Temp\NcpSupport* location. | |
| Modificada | Media (4.3) | 0.59% | — | Ncp-e Secure Enterprise Client | 9/12/2023 | 17/6/2026 | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the operating system by creating a symbolic link. | |
| Modificada | Media (6.5) | 0.70% | — | Ncp-e Secure Enterprise Client | 9/12/2023 | 17/6/2026 | Insecure File Permissions in Support Assistant in NCP Secure Enterprise Client before 12.22 allow attackers to write to configuration files from low-privileged user accounts. | |
| Modificada | Media (6.5) | 0.77% | — | Ncp-e Secure Enterprise Client | 9/12/2023 | 17/6/2026 | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers read the contents of arbitrary files on the operating system by creating a symbolic link. | |
| Modificada | Alta (8.1) | 0.85% | — | Ncp-e Secure Enterprise Client | 9/12/2023 | 17/6/2026 | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to delete arbitrary files on the operating system by creating a symbolic link. | |
| Modificada | Alta (7.8) | 0.53% | — | Ncp-e Secure Enterprise Client | 28/7/2020 | 17/6/2026 | NCP Secure Enterprise Client before 10.15 r47589 allows a symbolic link attack on enumusb.reg via Support Assistant. | |
| Modificada | Media (6.9) | 0.35% | — | Ncp-e Secure ClientNcp-e Secure Enterprise ClientNcp-e Secure Entry Client | 6/9/2012 | 16/6/2026 | Multiple untrusted search path vulnerabilities in NCP Secure Enterprise Client before 9.21 Build 68, Secure Entry Client before 9.23 Build 18, and Secure Client - Juniper Edition before 9.23 Build 18 allow local users to gain privileges via a Trojan horse (1) dvccsabase002.dll, (2) conman.dll, (3) kmpapi32.dll, or (4)… |