CVE-2017-8055
- EPSS 0.29%
- Veröffentlicht 22.04.2017 22:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
WatchGuard Fireware allows user enumeration, e.g., in the Firebox XML-RPC login handler. A login request that contains a blank password sent to the XML-RPC agent in Fireware v11.12.1 and earlier returns different responses for valid and invalid usern...
CVE-2014-0338
- EPSS 2.15%
- Veröffentlicht 16.03.2014 14:06:45
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple cross-site scripting (XSS) vulnerabilities in the firewall policy management pages in WatchGuard Fireware XTM before 11.8.3 allow remote attackers to inject arbitrary web script or HTML via the pol_name parameter.
CVE-2013-5702
- EPSS 0.26%
- Veröffentlicht 19.10.2013 10:36:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple cross-site scripting (XSS) vulnerabilities in WebCenter in WatchGuard WSM and Fireware before 11.8 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters.
CVE-2013-6021
- EPSS 54.04%
- Veröffentlicht 19.10.2013 10:36:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in WGagent in WatchGuard WSM and Fireware before 11.8 allows remote attackers to execute arbitrary code via a long sessionid value in a cookie.