CVE-2025-1547
- EPSS 0.04%
- Veröffentlicht 04.12.2025 22:11:09
- Zuletzt bearbeitet 04.12.2025 22:15:48
A stack-based buffer overflow vulnerability [CWE-121] in WatchGuard Fireware OS's certificate request command could allow an authenticated privileged user to execute arbitrary code via specially crafted CLI commands.This issue affects Fireware OS: fr...
CVE-2025-6946
- EPSS 0.04%
- Veröffentlicht 04.12.2025 21:48:50
- Zuletzt bearbeitet 04.12.2025 22:15:49
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS allows Stored XSS via the IPS module. This vulnerability requires an authenticated administrator session to a locally ...
CVE-2025-1545
- EPSS 0.17%
- Veröffentlicht 04.12.2025 21:48:27
- Zuletzt bearbeitet 04.12.2025 22:15:48
An XPath Injection vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to retrieve sensitive information from the Firebox configuration through an exposed authentication or management web interface. This vulnerability ...
CVE-2025-11838
- EPSS 0.07%
- Veröffentlicht 04.12.2025 21:48:10
- Zuletzt bearbeitet 04.12.2025 22:15:46
A memory corruption vulnerability in WatchGuard Fireware OS may allow an unauthenticated attacker to trigger a Denial of Service (DoS) condition in the Mobile User VPN with IKEv2 and the Branch Office VPN using IKEv2 when configured with a dynamic ga...
CVE-2025-13940
- EPSS 0.01%
- Veröffentlicht 04.12.2025 21:47:44
- Zuletzt bearbeitet 04.12.2025 22:15:48
An Expected Behavior Violation [CWE-440] vulnerability in WatchGuard Fireware OS may allow an attacker to bypass the Fireware OS boot time system integrity check and prevent the Firebox from shutting down in the event of a system integrity check fail...
CVE-2025-13939
- EPSS 0.04%
- Veröffentlicht 04.12.2025 21:47:37
- Zuletzt bearbeitet 04.12.2025 22:15:48
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (Gateway Wireless Controller module) allows Stored XSS.This issue affects Fireware OS 11.7.2 up to and including 11.12...
CVE-2025-13938
- EPSS 0.04%
- Veröffentlicht 04.12.2025 21:47:29
- Zuletzt bearbeitet 04.12.2025 22:15:47
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (Autotask Technology Integration module) allows Stored XSS.This issue affects Fireware OS 12.4 up to and including 12....
CVE-2025-13937
- EPSS 0.04%
- Veröffentlicht 04.12.2025 21:47:19
- Zuletzt bearbeitet 04.12.2025 22:15:47
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (ConnectWise Technology Integration module) allows Stored XSS.This issue affects Fireware OS 12.4 up to and including ...
CVE-2025-13936
- EPSS 0.04%
- Veröffentlicht 04.12.2025 21:45:51
- Zuletzt bearbeitet 04.12.2025 22:15:47
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (Tigerpaw Technology Integration module) allows Stored XSS.This issue affects Fireware OS 12.4 up to and including 12....
CVE-2025-12196
- EPSS 0.06%
- Veröffentlicht 04.12.2025 21:45:29
- Zuletzt bearbeitet 04.12.2025 22:15:47
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via a specially crafted CLI command.This vulnerability affects Fireware OS 12.0 up to and including 12.11.4, 1...