Watchguard

Fireware

80 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.32%
  • Veröffentlicht 28.08.2026 02:16:22
  • Zuletzt bearbeitet 03.09.2026 21:17:22

An out-of-bounds read vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to create a Denial of Service (DoS) condition in VPN processing by sending specially crafted network traffic.

  • EPSS 0.61%
  • Veröffentlicht 02.07.2026 23:08:27
  • Zuletzt bearbeitet 28.08.2026 00:16:46

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via a specially crafted CLI command.

  • EPSS 0.65%
  • Veröffentlicht 02.07.2026 23:08:12
  • Zuletzt bearbeitet 28.08.2026 00:16:46

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS networkd process could allow an authenticated privileged user to execute arbitrary code via a specially crafted requests to the Management Web UI.

  • EPSS 0.62%
  • Veröffentlicht 02.07.2026 23:07:57
  • Zuletzt bearbeitet 28.08.2026 00:16:46

A path traversal vulnerability in the WatchGuard Fireware OS Management Web UI allows a privileged authenticated attacker to write arbitrary files on the Firebox's filesystem.

Medienbericht
  • EPSS 0.14%
  • Veröffentlicht 02.07.2026 23:07:30
  • Zuletzt bearbeitet 10.08.2026 20:17:25

A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client for Windows allows a local attacker to escalate their privileges to NT AUTHORITY\SYSTEM on the machine where the client is installed. This issue affects the Mobi...

  • EPSS 0.27%
  • Veröffentlicht 02.07.2026 23:07:16
  • Zuletzt bearbeitet 28.08.2026 00:18:22

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an unauthenticated attacker on the same local network segment to execute arbitrary code. This vulnerability affects Fireware OS 11.0 up to and including 11.12.4_Update1, 12....

  • EPSS 0.15%
  • Veröffentlicht 02.07.2026 23:07:01
  • Zuletzt bearbeitet 28.08.2026 00:16:48

In exception circumstances, WatchGuard Fireware OS on a FireCluster may use a hard-coded encryption key to encrypt saved credentials for Access Portal resources. This vulnerability does not affect devices that do not support the Access Portal featur...

  • EPSS 0.5%
  • Veröffentlicht 02.07.2026 23:06:48
  • Zuletzt bearbeitet 28.08.2026 00:16:46

A null pointer dereference vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to create a denial-of-service (DoS) condition by sending specially crafted IKEv2 messages. This vulnerability affects both the Mobile User ...

  • EPSS 1.01%
  • Veröffentlicht 02.07.2026 23:06:32
  • Zuletzt bearbeitet 28.08.2026 00:16:46

WatchGuard Fireware OS contains a race condition leading to a use-after-free vulnerability in LDAP authentication for the Mobile User VPN with IKEv2. A remote unauthenticated attacker could exploit this vulnerability to execute arbitrary code in the ...

  • EPSS 0.27%
  • Veröffentlicht 02.07.2026 23:06:12
  • Zuletzt bearbeitet 28.08.2026 00:16:48

WatchGuard Fireware OS contains a firmware validation bypass when processing a backup image via the backup/restore feature. An authenticated administrator can exploit this vulnerability to install a tampered firmware image.