HIGH · 7.2

CVE-2006-0968

The ncprwsnt service in NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to execute arbitrary code by modifying the connect.bat script, which is ...

Vulnerability Description

The ncprwsnt service in NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to execute arbitrary code by modifying the connect.bat script, which is automatically executed by the service after a connection is established.

CVSS Score

7.2

HIGH

AV:L/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
Ncp Network CommunicationsSecure Client8.11_build_146

References

FAQ

What is CVE-2006-0968?

CVE-2006-0968 is a vulnerability with a CVSS score of 7.2 (HIGH). The ncprwsnt service in NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to execute arbitrary code by modifying the connect.bat script, which is ...

How severe is CVE-2006-0968?

CVE-2006-0968 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-0968?

Check the references section above for vendor advisories and patch information. Affected products include: Ncp Network Communications Secure Client.