CVE-2025-12690

Execution with unnecessary privileges in Forcepoint NGFW Engine allows local privilege escalation.This issue affects NGFW Engine through 6.10.19, through 7.3.0, through 7.2.4, through 7.1.10.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:forcepoint:next_generation_firewall:*:*:*:*:*:*:*:*
cpe:2.3:a:forcepoint:next_generation_firewall:*:*:*:*:*:*:*:*
cpe:2.3:a:forcepoint:next_generation_firewall:*:*:*:*:*:*:*:*
cpe:2.3:a:forcepoint:next_generation_firewall:7.3.0:*:*:*:*:*:*:*

History

07 May 2026, 20:55

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
First Time Forcepoint
Forcepoint next Generation Firewall
Summary
  • (es) Ejecución con privilegios innecesarios en el Motor NGFW de Forcepoint permite la escalada de privilegios local. Este problema afecta al Motor NGFW hasta la versión 6.10.19, hasta la 7.3.0, hasta la 7.2.4, hasta la 7.1.10.
CPE cpe:2.3:a:forcepoint:next_generation_firewall:7.3.0:*:*:*:*:*:*:*
cpe:2.3:a:forcepoint:next_generation_firewall:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
References () https://support.forcepoint.com/s/article/Security-Advisory-Local-Privilege-Escalation-in-NGFW-Engine - () https://support.forcepoint.com/s/article/Security-Advisory-Local-Privilege-Escalation-in-NGFW-Engine - Vendor Advisory

11 Mar 2026, 16:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-11 16:16

Updated : 2026-05-07 20:55


NVD link : CVE-2025-12690

Mitre link : CVE-2025-12690

CVE.ORG link : CVE-2025-12690


JSON object : View

Products Affected

forcepoint

  • next_generation_firewall
CWE
CWE-250

Execution with Unnecessary Privileges

NVD-CWE-noinfo