WatchGuard Mobile VPN with SSL Local Privilege Escalation via Non-Standard Installation Directory
Vulnerability Description
The WatchGuard Mobile VPN with SSL Client on Windows does not properly configure directory permissions when installed in a non-default directory. This could allow an authenticated local attacker to escalate to SYSTEM privileges on a vulnerable system. This issue affects Mobile VPN with SSL Client: from 11.0 through 12.11.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-2781
Credits & Attribution
No credits recorded in the NVD database.
More from WatchGuard
View All →Affected Vendor
WatchGuard
View all reports →