Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Fireware OS 2026.2.2, Fireware OS 12.12.2, Fireware OS 12.5.20
Vendor Workaround
Administrators should not expose the Firebox's management interfaces to untrusted network locations. See our Firebox Remote Management Best Practices (https://techsearch.watchguard.com/KB?type=Article&SFDCID=kA10H000000XeAtSAK&lang=en_US) KB article for guidance on how to secure remote management to a Firebox.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://psirt.watchguard.com/CVE-2026-78008 |
|
Thu, 27 Aug 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A buffer overflow vulnerability in the WatchGuard Fireware OS Management Web UI allows an authenticated administrator with network access to cause a denial of service (DoS) condition or potentially execute arbitrary code by sending specially crafted network traffic. | |
| Title | Fireware OS Authenticated Buffer Overflow in wgagent | |
| First Time appeared |
Watchguard
Watchguard fireware Os |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Watchguard
Watchguard fireware Os |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: WatchGuard
Published:
Updated: 2026-08-28T17:37:45.621Z
Reserved: 2026-08-21T21:46:38.156Z
Link: CVE-2026-78008
No data.
Status : Deferred
Published: 2026-08-28T02:16:22.167
Modified: 2026-08-28T20:19:56.550
Link: CVE-2026-78008
No data.
OpenCVE Enrichment
Updated: 2026-08-28T11:15:03Z
-
CWE-787
Out-of-bounds Write