CVE-2025-2782

Summary

The WatchGuard Terminal Services Agent on Windows does not properly configure directory permissions when installed in a non-default directory. This could allow an authenticated local attacker to escalate to SYSTEM privileges on a vulnerable system.

Affected Software

VendorProductVersion RangeStatus
WatchGuardSSO Terminal Services Agent12.0 < 12.11.2affected

Weaknesses

  • CWE-276: CWE-276

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References