AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-4996

MEDIUM · CVSS 6.6 EPSS 0.38%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-11-06 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.6. It affects Windows.

CVE
CVE-2023-4996
Severity
MEDIUM
CVSS
6.6
EPSS
0.38%
Windows

Original NVD Description

Netskope was made aware of a security vulnerability in its NSClient product for version 100 & prior where a malicious non-admin user can disable the Netskope client by using a specially-crafted package. The root cause of the problem was a user control code when called by a Windows ServiceController did not validate the permissions associated with the user before executing the user control code. This user control code had permissions to terminate the NSClient service. 

Related CVEs

Other vulnerabilities affecting the same vendor(s)