Vulnerability index

Browse CVEs

98 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2026-8247 An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an unauthenticated attacker on the same local network segment to execute arb… Fireware 11.12.4 / 12.5.19+ Fix from $1,9502026-07-03 HIGH 7.2 CVE-2026-13722 WatchGuard Fireware OS contains a firmware validation bypass when processing a backup image via the backup/restore feature. An authenticated administ… Fireware 11.12.4 / 12.12.1+ Fix from $1,9502026-07-03 HIGH 7.2 CVE-2026-13383 An Out-of-bounds Write vulnerability in WatchGuard Fireware OS ikestubd process could allow an authenticated privileged user to execute arbitrary cod… Fireware 12.12.1 / 2026.2.1+ Fix from $1,9502026-07-03 HIGH 7.2 CVE-2026-13384 An Out-of-bounds Write vulnerability in WatchGuard Fireware OS wgagent process could allow an authenticated privileged user to execute arbitrary code… Fireware 12.12.1 / 2026.2.1+ Fix from $1,9502026-07-03 HIGH 8.1 CVE-2026-13368 WatchGuard Fireware OS contains a race condition leading to a use-after-free vulnerability in LDAP authentication for the Mobile User VPN with IKEv2.… Fireware 11.12.4 / 12.5.19+ Fix from $1,9502026-07-03 HIGH 7.8 CVE-2026-13079 A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client for Windows allows a local attacker to escalate their privile… Mobile Vpn With Ssl 12.12.1 / 2026.2.1+ Fix from $1,9502026-07-03 HIGH 7.5 CVE-2026-13084 A null pointer dereference vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to create a denial-of-service (DoS) co… Fireware 11.12.4 / 12.5.19+ Fix from $1,9502026-07-03 HIGH 7.2 CVE-2026-13053 An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via a spe… Fireware 12.12.1 / 2026.2.1+ Fix from $1,9502026-07-03 HIGH 7.2 CVE-2026-13054 A path traversal vulnerability in the WatchGuard Fireware OS Management Web UI allows a privileged authenticated attacker to write arbitrary files on… Fireware 12.12.1 / 2026.2.1+ Fix from $1,9502026-07-03 HIGH 7.2 CVE-2026-13050 An Out-of-bounds Write vulnerability in WatchGuard Fireware OS networkd process could allow an authenticated privileged user to execute arbitrary cod… Fireware 11.12.4 / 12.5.19+ Fix from $1,9502026-07-03 HIGH 7.8 CVE-2026-6787 Use of Hard-coded Cryptographic Key vulnerability in WatchGuard Agent on Windows allows Inclusion of Code in Existing Process. Agent 1.25.03.0000+ Fix from $1,9502026-05-06 HIGH 7.8 CVE-2026-6788 Uncontrolled Search Path Element vulnerability in WatchGuard Agent on Windows allows Using Malicious Files. Agent 1.25.03.0000+ Fix from $1,9502026-05-06 HIGH 7.8 CVE-2026-41288 Incorrect permission assignment for a resource in the patch management component of the WatchGuard Agent on Windows allows an authenticated local use… Agent 1.25.03.0000+ Fix from $1,9502026-05-06 MEDIUM 6.5 CVE-2026-41286 Stack-based Buffer Overflow vulnerability in the WatchGuard Agent discovery service on Windows allows Overflow Buffers. An unauthenticated attacker o… Agent 1.25.03.0000+ Fix from $1,6002026-05-06 MEDIUM 6.5 CVE-2026-41287 Stack-based Buffer Overflow vulnerability in the WatchGuard Agent discovery service on Windows allows Overflow Buffers. An unauthenticated attacker o… Agent 1.25.03.0000+ Fix from $1,6002026-05-06 HIGH 7.2 CVE-2026-3987 A path traversal vulnerability in the Fireware OS Web UI on WatchGuard Firebox systems may allow a privileged authenticated remote attacker to execut… Fireware 12.12 / 2026.2+ Fix from $1,9502026-04-01 MEDIUM 6.7 CVE-2026-4266 An Insecure Deserialization vulnerability in WatchGuard Fireware OS allows an attacker that has obtained write access to the local filesystem through… Fireware 12.12 / 2026.2+ Fix from $1,6002026-03-30 MEDIUM 6.5 CVE-2026-4315 A Cross-Site Request Forgery (CSRF) vulnerability in the WatchGuard Fireware OS WebUI could allow a remote attacker to trigger a denial-of-service (D… Fireware 11.12.4 / 12.5.18+ Fix from $1,6002026-03-30 MEDIUM 6.1 CVE-2026-3343 A reflected cross-site scripting (XSS) vulnerability in the Fireware OS Web UI enabled execution of malicious JavaScript in the context of an authent… Fireware 12.11.8 / 2026.1.2+ Fix from $1,6002026-03-03 HIGH 7.2 CVE-2026-3342EPSS 6% An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an authenticated privileged administrator to execute arbitrary code with roo… Fireware 12.5.17 / 12.11.8+ Fix from $1,9502026-03-03 CRITICAL 9.8 CVE-2025-14733 KEVEPSS 27% An Out-of-bounds Write vulnerability in the WatchGuard Fireware OS iked process may allow a remote unauthenticated attacker to execute arbitrary code… Fireware 12.5.15 / 12.11.6+ Fix from $2,3002025-12-19 HIGH 7.5 CVE-2025-1545 An XPath Injection vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to retrieve sensitive information from the Fir… Fireware 12.5.14 / 12.11.5+ Fix from $1,9502025-12-04 HIGH 7.2 CVE-2025-1547 A stack-based buffer overflow vulnerability [CWE-121] in WatchGuard Fireware OS's certificate request command could allow an authenticated privileged… Fireware 12.5.13 / 12.11.3+ Fix from $1,9502025-12-04 MEDIUM 6.1 CVE-2025-13939 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (Gateway Wireless… Fireware 12.5.14 / 12.11.5+ Fix from $1,6002025-12-04 MEDIUM 5.5 CVE-2025-13940 An Expected Behavior Violation [CWE-440] vulnerability in WatchGuard Fireware OS may allow an attacker to bypass the Fireware OS boot time system int… Fireware 12.11.5 / 2025.1.3+ Fix from $1,6002025-12-04 HIGH 7.2 CVE-2025-12196 An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via a spe… Fireware 12.5.14 / 12.11.5+ Fix from $1,9502025-12-04 MEDIUM 6.1 CVE-2025-13936 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (Tigerpaw Technol… Fireware 12.5.14 / 12.11.5+ Fix from $1,6002025-12-04 MEDIUM 6.1 CVE-2025-13937 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (ConnectWise Tech… Fireware 12.5.14 / 12.11.5+ Fix from $1,6002025-12-04 MEDIUM 6.1 CVE-2025-13938 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS (Autotask Technol… Fireware 12.5.14 / 12.11.5+ Fix from $1,6002025-12-04 HIGH 7.5 CVE-2025-11838 A memory corruption vulnerability in WatchGuard Fireware OS may allow an unauthenticated attacker to trigger a Denial of Service (DoS) condition in t… Fireware 12.11.5 / 2025.1.3+ Fix from $1,9502025-12-04