VendorsWatchGuardfirewareall versions
Vulnerabilities

WatchGuard Fireware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

61CVEs
CVE-2025-9242
WatchGuard Firebox iked Out of Bounds Write Vulnerability
Published 2025-09-17 · Analyzed
9.8KEVEPSS 0.913
CVE-2022-26318
On WatchGuard Firebox and XTM appliances, an unauthenticated user can execute arbitrary code, aka FBX-22786. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
Published 2022-03-04 · Analyzed
9.8KEVEPSS 0.782
CVE-2025-14733
WatchGuard Firebox iked Out of Bounds Write Vulnerability
Published 2025-12-19 · Analyzed
9.8KEVEPSS 0.265
CVE-2022-31789
An integer overflow in WatchGuard Firebox and XTM appliances allows an unauthenticated remote attacker to trigger a buffer overflow and potentially execute arbitrary code by sending a malicious request to exposed management ports. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.
Published 2022-09-06 · Modified
9.8EPSS 0.019
CVE-2013-6021
Buffer overflow in WGagent in WatchGuard WSM and Fireware before 11.8 allows remote attackers to execute arbitrary code via a long sessionid value in a cookie.
Published 2013-10-19 · Modified
9.31 PoCEPSS 0.117
CVE-2026-13368
WatchGuard Firebox Race Condition and Use-After-Free in Mobile VPN with IKEv2 LDAP Authentication
Published 2026-07-02 · Analyzed
9.2EPSS 0.009
CVE-2022-25361
WatchGuard Firebox and XTM appliances allow an unauthenticated remote attacker to delete arbitrary files from a limited set of directories on the system. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
Published 2022-06-07 · Modified
9.1EPSS 0.013
CVE-2022-23176
WatchGuard Firebox and XTM appliances allow a remote attacker with unprivileged credentials to access the system with a privileged management session via exposed management access. This vulnerability impacts Fireware OS before 12.7.2_U1, 12.x before 12.1.3_U3, and 12.2.x through 12.5.x before 12.5.7_U3.
Published 2022-02-24 · Analyzed
9.0KEVEPSS 0.108
CVE-2022-25293
A systemd stack-based buffer overflow in WatchGuard Firebox and XTM appliances allows an authenticated remote attacker to potentially execute arbitrary code by initiating a firmware update with a malicious upgrade image. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
Published 2022-02-24 · Modified
8.8EPSS 0.021
CVE-2022-25292
A wgagent stack-based buffer overflow in WatchGuard Firebox and XTM appliances allows an authenticated remote attacker to potentially execute arbitrary code by initiating a firmware update with a malicious upgrade image. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
Published 2022-02-24 · Modified
8.8EPSS 0.021
CVE-2022-25291
An integer overflow in WatchGuard Firebox and XTM appliances allows an authenticated remote attacker to trigger a heap-based buffer overflow and potentially execute arbitrary code by initiating a firmware update with a malicious upgrade image. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
Published 2022-02-24 · Modified
8.8EPSS 0.018
CVE-2022-25360
WatchGuard Firebox and XTM appliances allow an authenticated remote attacker with unprivileged credentials to upload files to arbitrary locations. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
Published 2022-02-24 · Modified
8.8EPSS 0.013
CVE-2026-8247
WatchGuard Firebox admd Out of Bounds Write Vulnerability
Published 2026-07-02 · Analyzed
8.8EPSS 0.004
CVE-2026-13084
Null Pointer Dereference in WatchGuard Fireware OS iked Process
Published 2026-07-02 · Analyzed
8.7EPSS 0.006
CVE-2025-11838
WatchGuard Firebox iked Memory Corruption Vulnerability
Published 2025-12-04 · Modified
8.7EPSS 0.005
CVE-2026-3987
WatchGuard Firebox Arbitrary File Write vis Path Traversal in Fireware Web UI
Published 2026-04-01 · Analyzed
8.6EPSS 0.011
CVE-2024-5974
Firebox Authenticated Buffer Overflow Vulnerability
Published 2024-07-09 · Modified
8.6EPSS 0.010
CVE-2026-13384
WatchGuard Firebox wgagent Out of Bounds Write Vulnerability
Published 2026-07-02 · Modified
8.6EPSS 0.007
CVE-2026-13383
WatchGuard Firebox ikestubd Out of Bounds Write Vulnerability
Published 2026-07-02 · Modified
8.6EPSS 0.007
CVE-2025-12195
WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI IPSec Configuration
Published 2025-12-04 · Modified
8.6EPSS 0.007
CVE-2026-3342
WatchGuard Firebox Out of Bounds Write Vulnerability
Published 2026-03-03 · Analyzed
8.6EPSS 0.007
CVE-2026-13050
WatchGuard Firebox networkd Out of Bounds Write Vulnerability
Published 2026-07-02 · Analyzed
8.6EPSS 0.006
CVE-2026-13053
WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI Command Handler
Published 2026-07-02 · Modified
8.6EPSS 0.006
CVE-2025-12196
WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI Ping Command
Published 2025-12-04 · Modified
8.6EPSS 0.006
CVE-2026-13054
WatchGuard Firebox Arbitrary File Write via Path Traversal in Management Web UI
Published 2026-07-02 · Modified
8.6EPSS 0.006
CVE-2025-12026
WatchGuard Firebox Authenticated Out of Bounds Write in certd
Published 2025-12-04 · Modified
8.6EPSS 0.004
CVE-2026-13722
WatchGuard Firebox Firmware Image Validation Bypass in WatchGuard Fireware OS
Published 2026-07-02 · Analyzed
8.6EPSS 0.003
CVE-2026-4266
WatchGuard Firebox Insecure Deserialization in Fireware Access Portal
Published 2026-03-30 · Analyzed
8.4EPSS 0.004
CVE-2025-1545
WatchGuard Firebox XPath Injection Vulnerability in Web CGI
Published 2025-12-04 · Modified
8.2EPSS 0.005
CVE-2017-14616
An FBX-5312 issue was discovered in WatchGuard Fireware before 12.0. If a login attempt is made in the XML-RPC interface with an XML message containing an empty member element, the wgagent crashes, logging out any user with a session opened in the UI. By continuously executing the failed login attempts, UI management of the device becomes impossible.
Published 2017-09-20 · Modified
7.8EPSS 0.016
CVE-2022-31791
WatchGuard Firebox and XTM appliances allow a local attacker (that has already obtained shell access) to elevate their privileges and execute code with root permissions. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.
Published 2022-09-06 · Modified
7.8EPSS 0.002
CVE-2026-13079
WatchGuard Mobile VPN with SSL Windows Client Local Privilege Escalation
Published 2026-07-02 · Modified
7.8EPSS 0.001
CVE-2022-31790
WatchGuard Firebox and XTM appliances allow an unauthenticated remote attacker to retrieve sensitive authentication server settings by sending a malicious request to exposed authentication endpoints. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.
Published 2022-09-06 · Modified
7.5EPSS 0.020
CVE-2025-1547
WatchGuard Firebox Authenticated Stack Overflow in Certificate Request Command
Published 2025-12-04 · Modified
7.5EPSS 0.004
CVE-2026-4315
WatchGuard Firebox Cross-Site Request Forgery (CSRF) in Fireware Web UI
Published 2026-03-30 · Analyzed
7.1EPSS 0.002
CVE-2026-13371
WatchGuard Firebox Management Web UI Denial of Service via Unsafe Deserialization
Published 2026-07-02 · Analyzed
6.9EPSS 0.006
CVE-2026-3344
WatchGuard Firebox System Integrity Check Bypass
Published 2026-03-03 · Modified
6.9EPSS 0.004
CVE-2025-13940
WatchGuard Firebox Boot Time System Integrity Check Bypass
Published 2025-12-04 · Modified
6.7EPSS 0.001
CVE-2022-25363
WatchGuard Firebox and XTM appliances allow an authenticated remote attacker with unprivileged credentials to modify privileged management user credentials. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
Published 2022-02-24 · Modified
6.5EPSS 0.009
CVE-2022-25290
WatchGuard Firebox and XTM appliances allow an authenticated remote attacker with unprivileged credentials to retrieve certificate private keys. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
Published 2022-02-24 · Modified
6.5EPSS 0.007
1 / 2Next →