← Vulnerability feed

Vulnerability record · CVE-2025-4879 · published 17 June 2025

CVE-2025-4879: Citrix workspace improper privilege management vulnerability

Citrix · Workspace

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows

7.3 CVSS 4.0 High EPSS 0.13% · top 97.8% CWE-269 · Improper privilege management
7.3CVSS 4.0 base score
0.13%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
17 Jun 2026Last modified by NVD

Description

Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows

CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2025-4879 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2019-11634Citrix Workspace App for Windows improper access controlCitrix Workspace App before 1904 for Windows contains an improper access control flaw (CWE-284) that, per the CVSS vector, is remotely reachable with…KEVEPSS 8.0%analysed8.8CVE-2020-8207Citrix workspace improper access control vulnerabilityImproper access control in Citrix Workspace app for Windows 1912 CU1 and 2006.1 causes privilege escalation and code execution when the automatic upd…EPSS 2.1%8.5CVE-2024-6286Citrix workspace improper privilege management vulnerabilityLocal Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for WindowsEPSS 0.39%7.8CVE-2023-24485Citrix workspace improper access control vulnerabilityVulnerabilities have been identified that, collectively, allow a standard Windows user to perform operations as SYSTEM on the computer running Citrix…EPSS 0.22%7.8CVE-2022-21825Citrix workspace improper access control vulnerabilityAn Improper Access Control vulnerability exists in Citrix Workspace App for Linux 2012 - 2111 with App Protection installed that can allow an attacke…EPSS 0.22%7.8CVE-2021-22907Citrix workspace improper access control vulnerabilityAn improper access control vulnerability exists in Citrix Workspace App for Windows potentially allows privilege escalation in CR versions prior to 2…EPSS 0.24%7.1CVE-2024-42423Citrix workspace incorrect authorization vulnerabilityCitrix Workspace App version 23.9.0.24.4 on Dell ThinOS 2311 contains an Incorrect Authorization vulnerability when Citrix CEB is enabled for WebLogi…EPSS 0.15%7.0CVE-2024-7889Citrix workspace vulnerabilityLocal privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for WindowsEPSS 0.25%

Source: NIST National Vulnerability Database (record CVE-2025-4879), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.