Local Privilege Escalation in Citrix Secure Access Client for Windows
CVE-2025-0320

8.6HIGH

Key Information:

Vendor

Citrix

Vendor
CVE Published:
17 June 2025

What is CVE-2025-0320?

A local privilege escalation vulnerability exists in the Citrix Secure Access Client for Windows that allows a low-privileged user to gain SYSTEM privileges. This flaw can lead to unauthorized actions and access to sensitive system information, potentially compromising the security of affected systems. Users are advised to mitigate risk by applying the latest patches and updates provided by Citrix.

Affected Version(s)

Secure Access Client for Windows 1 < 25.5.1.15

References

CVSS V4

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-0320 : Local Privilege Escalation in Citrix Secure Access Client for Windows