Executive brief
WatchGuard Mobile VPN with SSL is a remote access client used by organizations to securely connect employees to corporate networks. A local privilege escalation vulnerability allows a user already logged into a Windows system to execute arbitrary commands with system-level privileges, potentially enabling malware installation or full system compromise. This is a secondary attack path related to an earlier disclosed vulnerability (CVE-2024-4944).
Technical details
The vulnerability is a command injection flaw (CWE-77) that enables local privilege escalation on Windows systems running the WatchGuard Mobile VPN with SSL client. An authenticated local user can exploit improper input validation to execute arbitrary commands with elevated privileges. The attack vector is local, requiring prior access to the Windows system. The vulnerability was partially mitigated in version 12.11.3 but additional unmitigated attack paths remained; full resolution is available in version 12.11.5.
Affected products
- WatchGuard Mobile VPN with SSL Client 12.0 through 12.11.4 on Windows
Timeline
- 2025-10-29: disclosed
- 2025-10-29: patched: Resolved in version 12.11.5