CVE-2025-4660: Forescout SecureConnector RCE
netspi.com | vulnerability | CVE-2025-4660 | #rce | #red-team | #c2 | #vulnerability | #named-pipe | #cve-2025-4660 | #forescout | #secureconnector
Summary
CVE-2025-4660 lets a low-privileged attacker redirect Forescout SecureConnector to a rogue server via a misconfigured named pipe, turning the security agent into a C2 channel. Fixed in 11.3.7.
- CVE
- CVE-2025-4660
- Published
- Collected
Skip to content