poslední zpráva
SPOJENO PŘES CVE EPSS 0.00
WatchGuard security advisory (AV26-990)
Serial number: AV26-990 Date: October 2, 2026 As of October 1, 2026, WatchGuard is affected by a vulnerability in the following product: Endpoint Security Prior to 8.00.26.0012 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. CVE-2026-13043 — WatchGuard Endpoint Security Missing Authentication in Kernel Memory Access Driver Allows Arbitrary Kernel Memory Access WatchGuard Security Advisories
WatchGuard CA IT FI
CVE v události 1
| CVE | hodnocení | KEV | EPSS |
|---|---|---|---|
| CVE-2026-13043 | 9.3 4.0 · WatchGuard | – | 0.00 |
Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE. Advisory v textu uvádí CVSS 9.3.
Jak se o tom psalo 3
-
· Cyber Centre Kanada CA nadpis události
WatchGuard security advisory (AV26-990)
Serial number: AV26-990 Date: October 2, 2026 As of October 1, 2026, WatchGuard is affected by a vulnerability in the following product: Endpoint Security Prior to 8.00.26.0012 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. CVE-2026-13043 — WatchGuard Endpoint Security Missing Authentication in Kernel Memory Access Driver Allows Arbitrary Kernel Memory Access WatchGuard Security Advisories
-
· CSIRT Itálie (ACN) IT
Risolta vulnerabilità in WatchGuard Endpoint Security
WatchGuard ha rilasciato aggiornamenti di sicurezza per sanare una vulnerabilità con gravità "critica" in Endpoint Security per Windows, soluzione dedicata alla protezione dei dispositivi terminali. Tale vulnerabilità, qualora sfruttata, potrebbe consentire a un utente malintenzionato autenticato locale di elevare i propri privilegi ed eseguire codice arbitrario sui sistemi interessati.
-
· zachyceno · NCSC-FI FI
Critical vulnerability in WatchGuard Endpoint Security
Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.3, CVEs: CVE-2026-13043, Summary: A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) used by WatchGuard endpoint security products allows a local, authenticated attacker to bypass the driver's access-control handshake and issue arbitrary privileged commands to the driver, resulting in disclosure of kernel and process memory.