JumpCloud Remote Assist Vulnerability Enables Privilege Escalation on Windows

JumpCloud Remote Assist Vulnerability Enables Privilege Escalation on Windows

First seen 16 Dec 2025, 08:55 UTC CybersecuritynewsGbhackersFeeds.FeedburnerSecurityweekCyberpress+3 47.4

Article Content

Browse articles
ThreatCluster

A vulnerability in the JumpCloud Remote Assist for Windows agent (CVE-2025-34352) allows local privilege escalation and denial-of-service attacks. The flaw, discovered by XM Cyber researcher Hillel Pinto, is due to insecure file operations in the agent's uninstaller and affects versions prior to 0.317.0.

Ask AI about this cluster