CVE-2026-41288#
WatchGuard Agent on Windows Privilege Escalation Vulnerability
Summary #
Incorrect permission assignment for a resource in the patch management component of the WatchGuard Agent on Windows allows an authenticated local user to elevate their privileges to NT AUTHORITY\\SYSTEM.
Product status #
| Product | Affected | Not affected |
|---|---|---|
| WatchGuard Agent | >= 1.0.0.0, < 1.25.03.0000 | >= 1.25.03.0000 |
Weakness Type and Impact #
Exploitation Status #
WatchGuard is not aware of any exploitation of this vulnerability in the wild.
Solution #
WatchGuard Agent 1.25.03.0000