{"id":"CVE-2025-1549","title":"A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client on Windows enables a local user to execute arbitrary commands with elevated privileges on the Windows system","summary":"A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client on Windows enables a local user to execute arbitrary commands with elevated privileges on the Windows system. This vulnerability is an additional unm…","severity":"none","cwe":["CWE-77"],"published":"2025-10-29","updated":"2026-10-08","sourceUpdated":"2026-10-08T11:10:00.250","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-1549","references":[{"url":"https://psirt.watchguard.com/CVE-2025-1549","label":"5d1c2695-1a31-4499-88ae-e847036fd7e3"},{"url":"https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00016","label":"5d1c2695-1a31-4499-88ae-e847036fd7e3"}],"tags":["nvd"],"epss":0.00153,"epssPercentile":0.03844,"ingestedAt":"2026-10-08T11:31:27.680Z","slug":"CVE-2025-1549","body":"## Overview\n\nA local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client on Windows enables a local user to execute arbitrary commands with elevated privileges on the Windows system. This vulnerability is an additional unmitigated attack path for CVE-2024-4944.\n\n\n\n\n\nThis vulnerability is resolved in the Mobile VPN with SSL client for Windows version 12.11.5\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}