First published: Fri Mar 28 2025(Updated: )
The WatchGuard Terminal Services Agent on Windows does not properly configure directory permissions when installed in a non-default directory. This could allow an authenticated local attacker to escalate to SYSTEM privileges on a vulnerable system. This issue affects Terminal Services Agent: from 12.0 through 12.10.
Credit: 5d1c2695-1a31-4499-88ae-e847036fd7e3
Affected Software | Affected Version | How to fix |
---|---|---|
WatchGuard Terminal Services Agent | >=12.0<=12.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2782 has a high severity rating due to the potential for local privilege escalation to SYSTEM level.
To mitigate CVE-2025-2782, ensure that the WatchGuard Terminal Services Agent is installed in the default directory to properly configure directory permissions.
CVE-2025-2782 affects users of the WatchGuard Terminal Services Agent versions between 12.0 and 12.10 when installed in a non-default directory.
CVE-2025-2782 cannot be exploited remotely as it requires local authentication to execute the attack.
Authenticated local attackers with access to a vulnerable system could exploit CVE-2025-2782 to gain elevated privileges.