{"$schema":"https://docs.oasis-open.org/csaf/csaf/v2.1/schema/csaf.json","document":{"category":"csaf_security_advisory","csaf_version":"2.1","title":"WatchGuard Mobile VPN with SSL MacOS Privilege Escalation Vulnerability","distribution":{"tlp":{"label":"CLEAR"}},"publisher":{"category":"vendor","name":"WatchGuard PSIRT","namespace":"https://www.watchguard.com"},"tracking":{"id":"WGSA-2021-00002","status":"final","version":"16","initial_release_date":"2021-08-05T10:00:00+00:00","current_release_date":"2026-07-27T17:24:36.948289+00:00","revision_history":[{"date":"2021-08-05T10:00:00+00:00","number":"16","summary":"Initial release."}]},"references":[{"summary":"vendor-advisory","url":"https://psirt.watchguard.com/WGSA-2021-00002"}],"notes":[{"category":"summary","text":"The WatchGuard Mobile VPN with SSL client for macOS contains a privilege escalation vulnerability that could allow a local attacker to execute arbitrary commands with system level privileges.\n\n## Affected\nWatchGuard Mobile VPN with SSL 12.7","title":"Summary"}]},"product_tree":{"branches":[{"category":"vendor","name":"WatchGuard","branches":[{"category":"product_name","name":"Mobile VPN with SSL Client (macOS)","branches":[{"category":"product_version_range","name":"vers >= 12.0, < 12.7.2","product":{"name":"Mobile VPN with SSL Client (macOS) vers >= 12.0, < 12.7.2","product_id":"CSAFPID-f1b47ef4-8bf7-4495-ae0f-f8a8ab368049-macos"}}]}]}]},"vulnerabilities":[{"notes":[{"category":"description","text":"The WatchGuard Mobile VPN with SSL client for macOS contains a privilege escalation vulnerability that could allow a local attacker to execute arbitrary commands with system level privileges.\n\n## Affected\nWatchGuard Mobile VPN with SSL 12.7","title":"Summary"}],"product_status":{"known_affected":["CSAFPID-f1b47ef4-8bf7-4495-ae0f-f8a8ab368049-macos"]},"remediations":[{"category":"vendor_fix","details":"Upgrade to Mobile VPN with SSL Client 12.7.2 or later.","product_ids":["CSAFPID-f1b47ef4-8bf7-4495-ae0f-f8a8ab368049-macos"]}]}]}