An Out-of-bounds Write vulnerability in WatchGuard Fireware OS’s certificate request command could allow an authenticated privileged user to execute arbitrary code via specially crafted CLI commands.This vulnerability affects Fireware OS 12.0 up to and including 12.11.4, 12.5 up to and including 12.5.13, and 2025.1 up to and including 2025.1.2.
Metrics
Affected Vendors & Products
References
History
Fri, 05 Dec 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 04 Dec 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An Out-of-bounds Write vulnerability in WatchGuard Fireware OS’s certificate request command could allow an authenticated privileged user to execute arbitrary code via specially crafted CLI commands.This vulnerability affects Fireware OS 12.0 up to and including 12.11.4, 12.5 up to and including 12.5.13, and 2025.1 up to and including 2025.1.2. | |
| Title | WatchGuard Firebox Authenticated Out of Bounds Write in certd | |
| First Time appeared |
Watchguard
Watchguard fireware Os |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:12.0 cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:12.5 cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:2025.1 |
|
| Vendors & Products |
Watchguard
Watchguard fireware Os |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: WatchGuard
Published: 2025-12-04T21:43:46.266Z
Updated: 2025-12-06T04:55:48.396Z
Reserved: 2025-10-21T15:04:32.895Z
Link: CVE-2025-12026
Updated: 2025-12-05T17:32:11.460Z
Status : Received
Published: 2025-12-04T22:15:46.777
Modified: 2025-12-04T22:15:46.777
Link: CVE-2025-12026
No data.
ReportizFlow