Fireboxcloud
Vendor:
First CVE: Jun 7, 2022 · Active for 4 years
32
Total CVEs
More Total CVEs than 96% of tracked products
8.0
Avg CVEs / Year
Higher CVE frequency than 94% of tracked products
6.5
Avg CVSS
Higher Avg CVSS than 31% of tracked products
6.3%
KEV Rate
Higher KEV Rate than 97% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Fireboxcloud over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 7, 2022
4 years ago
Most Recent CVE
Jul 2, 2026
23 days ago
CVE Severity & Scoring
Fireboxcloud32 CVEs
50%
41%
9%
All CVEs352,427 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (6.3%)
Network30 (93.8%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low31 (96.9%)
High1 (3.1%)
Unknown0 (0.0%)
User Interaction
None19 (59.4%)
Unknown0 (0.0%)
Required13 (40.6%)
Privileges Required
Low2 (6.3%)
High19 (59.4%)
None11 (34.4%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (32 CVEs).
32 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-9242CRITICAL An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to execute arbitrary code. This vulnerability affects both the Mobile Use | Sep 17, 2025 | 9.8 | 98 | YES | YES |
CVE-2025-14733CRITICAL An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow a remote unauthenticated attacker to execute arbitrary code. This vulnerability affects both the Mobile Use | Dec 19, 2025 | 9.8 | 84 | YES | NO |
CVE-2026-13053HIGH An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via a specially crafted CLI command.
Th | Jul 2, 2026 | 7.2 | 36 | NO | NO |
CVE-2026-13054HIGH A path traversal vulnerability in the WatchGuard Fireware OS Management Web UI allows a privileged authenticated attacker to write arbitrary files on the Firebox's filesystem.
| Jul 2, 2026 | 7.2 | 35 | NO | NO |
CVE-2026-13079HIGH A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client for Windows allows a local attacker to escalate their privileges to NT AUTHORITY\SYSTEM on t | Jul 2, 2026 | 7.8 | 35 | NO | NO |
CVE-2026-13384HIGH An Out-of-bounds Write vulnerability in WatchGuard Fireware OS wgagent process could allow an authenticated privileged user to execute arbitrary code via a specially crafted reques | Jul 2, 2026 | 7.2 | 34 | NO | NO |
CVE-2026-13383HIGH An Out-of-bounds Write vulnerability in WatchGuard Fireware OS ikestubd process could allow an authenticated privileged user to execute arbitrary code via a specially crafted reque | Jul 2, 2026 | 7.2 | 33 | NO | NO |
CVE-2026-3342HIGH An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an authenticated privileged administrator to execute arbitrary code with root permissions via an exposed ma | Mar 3, 2026 | 7.2 | 29 | NO | NO |
CVE-2022-25361CRITICAL WatchGuard Firebox and XTM appliances allow an unauthenticated remote attacker to delete arbitrary files from a limited set of directories on the system. This vulnerability impacts | Jun 7, 2022 | 9.1 | 29 | NO | NO |
CVE-2026-13377MEDIUM Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WatchGuard Fireware OS SIP Proxy module allows Stored XSS. This vulnera | Jul 2, 2026 | 4.8 | 27 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (32 CVEs).
CISA KEV
2 CVEs
6.2% of CVEs· 97th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
3.1% of CVEs· 96th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (32 CVEs).
Media Mentions
Signals from CVEs in this product scope (32 CVEs).
Top CNAs Publishing CVEs For Fireboxcloud
Top CWEs
Versions
No cataloged versions.