Local Privilege Escalation in WatchGuard Mobile VPN Client for Windows
CVE-2025-1549
6.3MEDIUM
What is CVE-2025-1549?
A local privilege escalation vulnerability exists in the WatchGuard Mobile VPN with SSL client for Windows, which allows an authenticated local user to execute arbitrary commands with elevated privileges. This issue provides an additional attack vector for potential exploitation related to previous vulnerabilities. The vulnerability has been addressed in the Mobile VPN with SSL client for Windows version 12.11.3, which mitigates the risks associated with this flaw.
Affected Version(s)
Mobile VPN with SSL Client 12.0 < 12.11.3
References
CVSS V4
Score:
6.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved
Credit
Defence Tech Malware Lab
