An Out-of-bounds Write vulnerability in WatchGuard Fireware OS ikestubd process could allow an authenticated privileged user to execute arbitrary code via a specially crafted requests to the Management Web UI.This vulnerability affects Fireware OS 12.1 up to and including 12.12 and 2025.1 up to and including 2026.2.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 12.1, < 12.12.1CPE matchmatch criteria | cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:* | ||
>= 2025.1, < 2026.2.1CPE matchmatch criteria | cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:* | ||
>= 12.5, <= 12.5.18CPE matchmatch criteria | cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.3 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.