Home

Description

Omnissa Horizon Client for Windows contains an LPE Vulnerability. A malicious actor with local access where Horizon Client for Windows is installed may be able to elevate privileges.

PUBLISHED Reserved 2025-02-04 | Published 2025-04-16 | Updated 2025-04-17 | Assigner Omnissa




HIGH: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Product status

Default status
unaffected

Omnissa Horizon Client for Windows 2412 or earlier
affected

Credits

Omnissa would like to thank Bocheng Xiang (@Crispr) From FDU for reporting this issue to us. finder

References

static.omnissa.com/sites/default/files/OMSA-2025-0001.pdf

www.omnissa.com/omnissa-security-response/

cve.org (CVE-2025-25230)

nvd.nist.gov (CVE-2025-25230)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.