Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wwp5-7982-8x96

Опубликовано: 29 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.3

Описание

The WatchGuard Mobile VPN with SSL Client on Windows does not properly configure directory permissions when installed in a non-default directory. This could allow an authenticated local attacker to escalate to SYSTEM privileges on a vulnerable system.

This issue affects Mobile VPN with SSL Client: from 11.0 through 12.11.

The WatchGuard Mobile VPN with SSL Client on Windows does not properly configure directory permissions when installed in a non-default directory. This could allow an authenticated local attacker to escalate to SYSTEM privileges on a vulnerable system.

This issue affects Mobile VPN with SSL Client: from 11.0 through 12.11.

EPSS

Процентиль: 19%
0.0006
Низкий

6.3 Medium

CVSS4

Дефекты

CWE-276

Связанные уязвимости

nvd
11 месяцев назад

The WatchGuard Mobile VPN with SSL Client on Windows does not properly configure directory permissions when installed in a non-default directory. This could allow an authenticated local attacker to escalate to SYSTEM privileges on a vulnerable system. This issue affects Mobile VPN with SSL Client: from 11.0 through 12.11.

EPSS

Процентиль: 19%
0.0006
Низкий

6.3 Medium

CVSS4

Дефекты

CWE-276