PT-2006-2003 · Ncp · Ncp Network Communication Secure Client
Published
2006-03-02
·
Updated
2018-10-18
·
CVE-2006-0964
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
NCP Network Communication Secure Client version 8.11 Build 146
Description
The issue allows local users to bypass firewall program execution rules. This is achieved by replacing an allowed program with an arbitrary program, effectively circumventing the security measures in place.
Recommendations
For NCP Network Communication Secure Client version 8.11 Build 146, consider implementing strict access controls to prevent unauthorized replacement of allowed programs until a patch is available. As a temporary workaround, monitor program execution rules closely to detect any potential bypass attempts.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ncp Network Communication Secure Client