News

CVE-2024-4944 - A local privilege escalation in WatchGuard Mobile VPN with SSL

In its new study, our Malware Lab identified CVE-2024-4944a local privilege escalation (LPE) vulnerability within WatchGuard Mobile VPN with SSLone of the most widely used VPN clients on Windows systems in the enterprise environment. 

This vulnerability allows a user with limited privileges to obtain the execution of commands with the rights of Local Systemcompletely compromising the endpoint and bypassing any active protection solutions. 

The risk is particularly high for remote devices, often outside the corporate security perimeter, where detection capabilities are reduced and the impact of a compromise may extend to partners and customers. 

After the responsible report to the vendor, WatchGuard recognised the problem and released a patch in the 12.11.3 of the software. Therefore, we urge all users and organisations involved to upgrade as soon as possible. 

This study highlights the importance of taking robust preventive measures: from code reviews for applications with elevated privileges, to secure IPC mechanisms, to continuous monitoring via EDR and log retention. Privilege escalation remains one of the most effective techniques for lateral movement and persistence within corporate environments. 

If you wish to learn more, here is the link to our studio complete. 

In addition, you can subscribe to the specific mailing list Cyber Studios by Tinexta Defenceto receive updates on upcoming research: 

https://tinextadefence.it/mailing-list-cyber-studios/

Share:

Degree in Business Administration from the University of Naples 'Federico II' with an MBA in Business Management achieved with high merit in 2008 by winning a scholarship provided by Invitalia S.p.A. from which she was selected in the first months of attendance as the best MBA profile.

After a brief experience in Invitalia S.p.A., he immediately held increasingly important roles in the management of Administration, Finance and Control of companies operating in the defence sector, theInformation Technology, of Cyber and National Security. In addition, she was Treasury Manager in companies operating in theEnergy.

He obtained an Executive Master in Finance (EMF) at SDA Bocconi in 2020, with a specialisation in Corporate Finance & Control and, in 2022, a further specialisation track in Asset, Wealth Management also at SDA Bocconi.

For over five years it has been the Chief Financial Officer of the Defence Tech Group, whose listing process he followed on the Euronext Growth Milan segment of Borsa Italiana.

From 2017 to 2024, she was a member of the boards of directors of all the legal entity of the Defence Tech Group with delegated powers over their financial management and from October 2021 to October 2024 was a Board Member of the Holding Company.

It is currently also Investor Relations Manager of the listed Defence Tech and follows all ESG issues of the Group.

In July 2021, she was recognised by Federmanager as one of the best talents under 44 at national level, receiving an important award as Young Manager 2020.