CVE-2010-5203
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Multiple untrusted search path vulnerabilities in NCP Secure Enterprise Client before 9.21 Build 68, Secure Entry Client before 9.23 Build 18, and Secure Client - Juniper Edition before 9.23 Build 18 allow local users to gain privileges via a Trojan horse (1) dvccsabase002.dll, (2) conman.dll, (3) kmpapi32.dll, or (4) ncpmon2.dll file in the current working directory, as demonstrated by a directory that contains a .pcf or .spd file. NOTE: some of these details are obtained from third party information.
Múltiples vulnerabilidades de ruta de búsqueda no confiable en NCP Secure Enterprise Client anterior a 9.21 Build 68, Entry Client anterior a 9.23 Build 18, y Secure Client - Juniper Edition anterior a 9.23 Build 18 permite a usuarios locales obtener privilegios a través de un caballo de troya (1) dvccsabase002.dll, (2) conman.dll, (3) kmpapi32.dll, o (4) Archivo ncpmon2.dll en el directorio de trabajo actual, como lo demuestra un directorio que contiene un pcf. o. spd. NOTA: algunos de estos detalles han sido obtenidos a partir de información de terceros.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2012-09-06 CVE Reserved
- 2012-09-06 CVE Published
- 2024-02-02 EPSS Updated
- 2024-09-16 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/41388 | 2012-09-06 | |
http://www.ncp-e.com/fileadmin/pdf/service_support/NCP_Client_Vulnerability_Statement_EN.pdf | 2012-09-06 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ncp-e Search vendor "Ncp-e" | Secure Client Search vendor "Ncp-e" for product "Secure Client" | <= 9.23 Search vendor "Ncp-e" for product "Secure Client" and version " <= 9.23" | juniper |
Affected
| ||||||
Ncp-e Search vendor "Ncp-e" | Secure Enterprise Client Search vendor "Ncp-e" for product "Secure Enterprise Client" | <= 9.21 Search vendor "Ncp-e" for product "Secure Enterprise Client" and version " <= 9.21" | - |
Affected
| ||||||
Ncp-e Search vendor "Ncp-e" | Secure Entry Client Search vendor "Ncp-e" for product "Secure Entry Client" | <= 9.23 Search vendor "Ncp-e" for product "Secure Entry Client" and version " <= 9.23" | - |
Affected
|