CVE-2025-1549: CWE-77 in WatchGuard Mobile VPN with SSL Client
A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client on Windows enables a local user to execute arbitrary commands with elevated privileges on the Windows system. This vulnerability is an additional unmitigated attack path for CVE-2024-4944. This vulnerability is resolved in the Mobile VPN with SSL client for Windows version 12.11.5
AI Analysis
Technical Summary
This vulnerability (CVE-2025-1549) affects the WatchGuard Mobile VPN with SSL client on Windows, enabling a local attacker to escalate privileges by executing arbitrary commands with elevated rights. It is classified under CWE-77 (Improper Neutralization of Special Elements used in a Command). The vulnerability is an additional attack vector complementing CVE-2024-4944. The vendor has fixed this issue in version 12.11.5 of the client.
Potential Impact
A local user with access to the affected system can execute arbitrary commands with elevated privileges, potentially compromising system integrity and security. This could allow unauthorized actions that require higher privileges on the Windows system.
Mitigation Recommendations
Upgrade the WatchGuard Mobile VPN with SSL client for Windows to version 12.11.5 or later, where this vulnerability is resolved. No other mitigation steps are indicated.
CVE-2025-1549: CWE-77 in WatchGuard Mobile VPN with SSL Client
Description
A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client on Windows enables a local user to execute arbitrary commands with elevated privileges on the Windows system. This vulnerability is an additional unmitigated attack path for CVE-2024-4944. This vulnerability is resolved in the Mobile VPN with SSL client for Windows version 12.11.5
CVSS v4.0
Score 6.3medium
Affected software
pkg:github/watchguard/mobile-vpn-with-ssl-clientRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This vulnerability (CVE-2025-1549) affects the WatchGuard Mobile VPN with SSL client on Windows, enabling a local attacker to escalate privileges by executing arbitrary commands with elevated rights. It is classified under CWE-77 (Improper Neutralization of Special Elements used in a Command). The vulnerability is an additional attack vector complementing CVE-2024-4944. The vendor has fixed this issue in version 12.11.5 of the client.
Potential Impact
A local user with access to the affected system can execute arbitrary commands with elevated privileges, potentially compromising system integrity and security. This could allow unauthorized actions that require higher privileges on the Windows system.
Mitigation Recommendations
Upgrade the WatchGuard Mobile VPN with SSL client for Windows to version 12.11.5 or later, where this vulnerability is resolved. No other mitigation steps are indicated.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- WatchGuard
- Date Reserved
- 2025-02-21T11:02:04.461Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 69024872c461420f24c8f564
Added to database: 10/29/2025, 17:01:38 UTC
Last enriched: 08/11/2026, 15:23:54 UTC
Last updated: 09/10/2026, 19:36:49 UTC
Views: 218
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.