Forescout SecureConnector Temporary Directory Vulnerability Allowing Unauthenticated Compliance Script Modification

Vulnerability

A vulnerability exists in Forescout SecureConnector version 11.3.07.0109 on Windows, where an insecure temporary directory allows unauthenticated users to modify compliance scripts.

Impact

Exploitation of this vulnerability could lead to unauthorized changes in compliance scripts, potentially allowing for malicious modifications to be executed under the guise of compliance management.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
5.4
impact
0.6
exploitability
4.7
remediation
0.0
relevance
0.0
threat
0.1
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.