PT-2025-48164 · Ncp · Ncp Secure Enterprise Client+1

Published

2025-11-26

·

Updated

2025-12-30

·

CVE-2025-26155

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NCP Secure Enterprise Client version 13.18 NCP Secure Entry Windows Client version 13.19
Description NCP Secure Enterprise Client 13.18 and NCP Secure Entry Windows Client 13.19 are affected by an Untrusted Search Path issue. This allows for potential malicious code execution due to an insecure search path configuration.
Recommendations Update NCP Secure Enterprise Client to a newer version. Update NCP Secure Entry Windows Client to a newer version.

Exploit

Fix

Untrusted Search Path

Weakness Enumeration

Related Identifiers

CVE-2025-26155

Affected Products

Ncp Secure Enterprise Client
Ncp Secure Entry Windows Client