NCP IPSec VPN Client MSI Installer Privilege Escallation (NCPVE-2025-0626)
During certain actions such as installation, update, or uninstallation, command line windows (cmd.exe) are temporarily opened with the rights of the SYSTEM account. In older versions of Windows, it is possible to execute any commands or programs with SYSTEM privileges in these interactive command prompts. This allows an attacker to bypass administrative protection mechanisms and gain unrestricted access to the system.
This vulnerabilit affects the WatchGuard Mobile VPN with IPSec client for Windows (provided by NCP) up to and including version 15.19
This vulnerability is resolved in the WatchGuard Mobile VPN with IPSec client for Windows (provided by NCP) version 15.33
| Product Family | Product Branch | Product List |
|---|---|---|
Other Software
|
IPSec VPN | IPSec VPN |