---
id: CVE-2026-16174
title: >-
  Netskope was notified about a potential gap in Netskope Endpoint DLP (EPDLP)
  running on Windows systems
summary: >-
  Netskope was notified about a potential gap in Netskope Endpoint DLP (EPDLP)
  running on Windows systems. Successful exploitation of the gap could
  potentially allow a privileged user to send a crafted message to the EPDLP
  process port to …
severity: high
cvss: 8.7
cvssVector: 'CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H'
cwe:
  - CWE-190
vendor: Netskope
product: Endpoint DLP
affected:
  - endpoint_dlp < 141.0
published: '2026-09-10'
updated: '2026-09-18'
sourceUpdated: '2026-09-18T19:31:11.370'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-16174'
references:
  - url: >-
      https://support.netskope.com/s/article/Netskope-Security-Advisory-Netskope-Client-Endpoint-DLP-Security-Notice---NSKPSA-2026-010
    label: psirt@netskope.com
tags:
  - nvd
  - cve.org
epss: 0.00134
epssPercentile: 0.02363
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-09-11T14:33:39.988228Z'
cvssSource: cna
ingestedAt: '2026-09-12T22:59:31.313Z'
---

## Overview

Netskope was notified about a potential gap in Netskope Endpoint DLP (EPDLP) running on Windows systems. Successful exploitation of the gap could potentially allow a privileged user to send a crafted message to the EPDLP process port to trigger an integer overflow, leading to memory corruption. Successful exploitation would require the EPDLP module to be enabled in the client configuration, and that Memory Integrity is disabled. A successful exploit could potentially result in a denial-of-service, arbitrary code execution, or privilege escalation on the local machine.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
