← לוח פגיעויות

CVE-2026-13079

גבוהה 7.8

תיאור (מקור, אנגלית)

A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client for Windows allows a local attacker to escalate their privileges to NT AUTHORITY\SYSTEM on the machine where the client is installed. This issue affects the Mobile VPN with SSL client for Windows up to and including 2026.2.

מדדים

CVSS 3.1
7.8 (HIGH) מקור הציון: NVD CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 4.0
7.3 (HIGH) מקור הציון: CNA CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-15/8/2026
CWE
CWE-732

מוצרים מושפעים

watchguard: mobile vpn with ssl; watchguard: fireware; watchguard: firebox m270; watchguard: firebox m290; watchguard: firebox m370; watchguard: firebox m390; watchguard: firebox m440; watchguard: firebox m4600; watchguard: firebox m470; watchguard: firebox m4800; watchguard: firebox m5600; watchguard: firebox m570; watchguard: firebox m5800; watchguard: firebox m590; watchguard: firebox m670

קישורים