1.
CVE-2025-4660 lets a low-privileged attacker redirect Forescout SecureConnector to a rogue server via a misconfigured named pipe, turning the security agent into a C2 channel. Fixed in 11.3.7.
Skip to content
Curated 1 security research writeups, vulnerability advisories and exploitation analyses for CVE-2025-4660.