Výsledky hledání

výrobce: WatchGuard× v celém archivu zrušit filtry

12 karet z 12 položek CZ · EN/orig

1

CISA: WatchGuard RCE flaw now exploited in ransomware attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are also exploiting a critical WatchGuard Firebox firewall vulnerability, which it flagged as actively exploited in December. [...]

KEV ✓ · ransomware EPSS 0.91 CVE-2022-23176 CVE-2025-14733 CVE-2025-9242 WatchGuard US

tg: zneužíváno tg: zranitelnost tp: ransomware

· BleepingComputer · CISA: WatchGuard RCE flaw now exploited in ransomware attacks

1

ZDI-26-632: WatchGuard FireWare OS epm connect Stack-based Buffer Overflow Remote Code Execution Vulnerability

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of WatchGuard FireWare OS. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2026-13086.

EPSS 0.00 CVSS 8.8 CVE-2026-13086 WatchGuard US

tg: zranitelnost

· Zero Day Initiative · ZDI-26-632: WatchGuard FireWare OS epm connect Stack-based Buffer Overflow Remote Code Execution Vulnerability

1

NCSC-2026-0335 [1.00] [M/H] Kwetsbaarheden verholpen in WatchGuard Fireware OS

WatchGuard heeft kwetsbaarheden verholpen in WatchGuard Fireware OS, specifiek in het iked-proces en de epm-service van het Mobile Security onderdeel. De kwetsbaarheden bevinden zich in het iked-proces en de epm-service van WatchGuard Fireware OS. Het iked-proces bevat een stack-based buffer overflow, een type confusion kwetsbaarheid en een heap overflow. Deze kwetsbaarheden kunnen worden misbruikt door een ongeauthenticeerde aanvaller door speciaal vervaardigd netwerkverkeer te verzenden. Dit…

WatchGuard NL

tg: zranitelnost

· NCSC-NL · NCSC-2026-0335 [1.00] [M/H] Kwetsbaarheden verholpen in WatchGuard Fireware OS

1

WatchGuard security advisory (AV26-865)

Serial Number: AV26-865Date: August 31, 2026 As of August 27, 2026, WatchGuard is affected by vulnerabilities in the following products: Dimension Prior to 2.3.1 Fireware OS Prior to 12.12.2 Prior to 12.5.20 Prior to 2026.2.2 The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become available. WatchGuard Security Advisories

WatchGuard CA

tg: zranitelnost

· Cyber Centre Kanada · WatchGuard security advisory (AV26-865)

1

Risolte vulnerabilità in prodotti WatchGuard

Aggiornamenti di sicurezza sanano numerose vulnerabilità, tra cui 5 con gravità "critica" e 12 con gravità “alta”, in prodotti WatchGuard. Tali vulnerabilità, qualora sfruttate, potrebbero consentire a un utente malintenzionato di eludere i meccanismi di autenticazione, eseguire codice arbitrario e/o compromettere la disponibilità del servizio sui sistemi interessati.

EPSS 0.01 CVE-2026-13086 CVE-2026-13108 CVE-2026-19313 CVE-2026-19314 CVE-2026-19315 CVE-2026-19316 CVE-2026-19317 CVE-2026-19318 CVE-2026-78008 CVE-2026-78009 CVE-2026-78010 CVE-2026-78011 CVE-2026-78174 CVE-2026-78610 CVE-2026-78612 CVE-2026-78613 CVE-2026-78614 WatchGuard IT

tg: zranitelnost

· CSIRT Itálie (ACN) · Risolte vulnerabilità in prodotti WatchGuard

2

WatchGuard security advisory (AV26-847)

Serial Number: AV26-847Date: August 25, 2026 As of August 19, 2026, WatchGuard is affected by vulnerabilities in the following product: WatchGuard Agent Prior to 1.25.13.0000 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. WatchGuard Endpoint Security Prime Enhancements and Resolved Issues Security Advisories | WatchGuard Technologies

WatchGuard CA

· Cyber Centre Kanada · WatchGuard security advisory (AV26-847)

3

ZDI-26-499: WatchGuard FireWare OS cli Token Parser Stack-based Buffer Overflow Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of WatchGuard FireWare OS. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 4.7. The following CVEs are assigned: CVE-2026-13053.

EPSS 0.01 CVSS 4.7 CVE-2026-13053 WatchGuard US

· Zero Day Initiative · ZDI-26-499: WatchGuard FireWare OS cli Token Parser Stack-based Buffer Overflow Remote Code Execution Vulnerability

ZDI-26-500: WatchGuard FireWare OS networkd network_wireless_kick_off_user_cb Stack-based Buffer Overflow Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of WatchGuard FireWare OS. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2026-13050.

EPSS 0.01 CVSS 7.2 CVE-2026-13050 WatchGuard US

· Zero Day Initiative · ZDI-26-500: WatchGuard FireWare OS networkd network_wireless_kick_off_user_cb Stack-based Buffer Overflow Remote Code Execution Vulnerability

ZDI-26-501: WatchGuard FireWare OS sigd comp_start_cb Directory Traversal Arbitrary File Creation Vulnerability

This vulnerability allows remote attackers to create arbitrary files on affected installations of WatchGuard FireWare OS. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2026-13054.

EPSS 0.01 CVSS 7.2 CVE-2026-13054 WatchGuard US

· Zero Day Initiative · ZDI-26-501: WatchGuard FireWare OS sigd comp_start_cb Directory Traversal Arbitrary File Creation Vulnerability

2

ZDI-26-427: WatchGuard FireWare OS iked ike2_hmac Null Pointer Dereference Denial-of-Service Vulnerability

This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of WatchGuard FireWare OS. Authentication is not required to exploit this vulnerability, but only systems using VPN with IKEv2 are vulnerable. The ZDI has assigned a CVSS rating of 5.9. The following CVEs are assigned: CVE-2026-13084.

EPSS 0.00 CVSS 5.9 CVE-2026-13084 WatchGuard US

· Zero Day Initiative · ZDI-26-427: WatchGuard FireWare OS iked ike2_hmac Null Pointer Dereference Denial-of-Service Vulnerability

ZDI-26-428: WatchGuard FireWare OS admd Stack-based Buffer Overflow Remote Code Execution Vulnerability

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of WatchGuard FireWare OS. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.5. The following CVEs are assigned: CVE-2026-8247.

EPSS 0.00 CVSS 7.5 CVE-2026-8247 WatchGuard US

· Zero Day Initiative · ZDI-26-428: WatchGuard FireWare OS admd Stack-based Buffer Overflow Remote Code Execution Vulnerability