Watchguard

Fireware

44 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.16%
  • Veröffentlicht 14.02.2025 14:15:32
  • Zuletzt bearbeitet 14.02.2025 14:15:32

Improper Input Validation vulnerability in WatchGuard Fireware OS allows an attacker to manipulate the value of the HTTP Host header in requests sent to the Web UI. An attacker could exploit this vulnerability to redirect users to malicious websites,...

  • EPSS 0.29%
  • Veröffentlicht 28.01.2025 00:15:06
  • Zuletzt bearbeitet 28.01.2025 00:15:06

An argument injection vulnerability in the diagnose and import pac commands in WatchGuard Fireware OS before 12.8.1, 12.1.4, and 12.5.10 allows an authenticated remote attacker with unprivileged credentials to upload or read files to limited, arbitra...

  • EPSS 6.34%
  • Veröffentlicht 09.07.2024 03:15:02
  • Zuletzt bearbeitet 13.01.2025 18:15:19

A buffer overflow in WatchGuard Fireware OS could may allow an authenticated remote attacker with privileged management access to execute arbitrary code with system privileges on the firewall. This issue affects Fireware OS: from 11.9.6 through 12.10...

  • EPSS 0.22%
  • Veröffentlicht 06.09.2022 19:15:08
  • Zuletzt bearbeitet 21.11.2024 07:05:20

A stored cross-site scripting (XSS) vulnerability exists in the management web interface of WatchGuard Firebox and XTM appliances. A remote attacker can potentially execute arbitrary JavaScript code in the management web interface by sending crafted ...

  • EPSS 0.17%
  • Veröffentlicht 06.09.2022 19:15:08
  • Zuletzt bearbeitet 21.11.2024 07:05:19

WatchGuard Firebox and XTM appliances allow a local attacker (that has already obtained shell access) to elevate their privileges and execute code with root permissions. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.

  • EPSS 4.04%
  • Veröffentlicht 06.09.2022 19:15:08
  • Zuletzt bearbeitet 21.11.2024 07:05:19

An integer overflow in WatchGuard Firebox and XTM appliances allows an unauthenticated remote attacker to trigger a buffer overflow and potentially execute arbitrary code by sending a malicious request to exposed management ports. This is fixed in Fi...

Exploit
  • EPSS 0.62%
  • Veröffentlicht 06.09.2022 18:15:15
  • Zuletzt bearbeitet 21.11.2024 07:05:19

WatchGuard Firebox and XTM appliances allow an unauthenticated remote attacker to retrieve sensitive authentication server settings by sending a malicious request to exposed authentication endpoints. This is fixed in Fireware OS 12.8.1, 12.5.10, and ...

  • EPSS 1.09%
  • Veröffentlicht 07.06.2022 14:15:09
  • Zuletzt bearbeitet 21.11.2024 06:52:04

WatchGuard Firebox and XTM appliances allow an unauthenticated remote attacker to delete arbitrary files from a limited set of directories on the system. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x throu...

Warnung
  • EPSS 92.37%
  • Veröffentlicht 04.03.2022 18:15:08
  • Zuletzt bearbeitet 13.11.2025 15:06:59

On WatchGuard Firebox and XTM appliances, an unauthenticated user can execute arbitrary code, aka FBX-22786. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.

  • EPSS 5.76%
  • Veröffentlicht 24.02.2022 15:15:31
  • Zuletzt bearbeitet 21.11.2024 06:51:56

A wgagent stack-based buffer overflow in WatchGuard Firebox and XTM appliances allows an authenticated remote attacker to potentially execute arbitrary code by initiating a firmware update with a malicious upgrade image. This vulnerability impacts Fi...