HarborGuard / CVE
Back to search
HIGHCVE-2026-41288Published Modified CNA WatchGuard

CVE-2026-41288: WatchGuard Agent on Windows Privilege Escalation Vulnerability

Incorrect permission assignment for a resource in the patch management component of the WatchGuard Agent on Windows allows an authenticated local user to elevate their privileges to NT AUTHORITY\\SYSTEM.

Metrics

CVSS v4.0
7.3
Severity
HIGH
Fixed in
1.25.03.0000
Affected Products
1

Fix available

1.25.03.0000
Affected packages
  • WatchGuard / WatchGuard Agent
    < 1.25.03.0000 (from 0)
CVSS Vector
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
References