CVE-2025-1549
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-10-29

Last updated on: 2025-12-04

Assigner: WatchGuard Technologies, Inc.

Description
A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client on Windows enables a local user to execute arbitrary commands with elevated privileges on the Windows system. This vulnerability is an additional unmitigated attack path for CVE-2024-4944. This vulnerability is resolved in the Mobile VPN with SSL client for Windows version 12.11.5
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-10-29
Last Modified
2025-12-04
Generated
2026-05-07
AI Q&A
2025-10-29
EPSS Evaluated
2026-05-05
NVD
Affected Vendors & Products
Showing 2 associated CPEs
Vendor Product Version / Range
watchguard mobile_vpn_with_ssl 12.10.2
watchguard mobile_vpn_with_ssl 12.11.3
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-77 The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability is a local privilege escalation issue in the WatchGuard Mobile VPN with SSL client on Windows. It allows a local user to execute arbitrary commands with elevated privileges on the affected Windows system, effectively giving them higher-level access than intended. It is related to and an additional attack path for CVE-2024-4944.


How can this vulnerability impact me? :

The vulnerability can allow a local attacker to gain elevated privileges on a Windows system running the vulnerable WatchGuard Mobile VPN with SSL client. This means the attacker could execute commands with higher permissions, potentially leading to unauthorized system changes, data access, or further compromise of the system.


What immediate steps should I take to mitigate this vulnerability?

To mitigate this vulnerability, immediately update the WatchGuard Mobile VPN with SSL client for Windows to version 12.11.3 or later, as this version resolves the issue.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart