TROYANOSYVIRUS
Volver a CVEs

CVE-2026-3342

HIGH
7.2

Descripcion

An Out-of-bounds Write vulnerability in WatchGuard Fireware OS may allow an authenticated privileged administrator to execute arbitrary code with root permissions via an exposed management interface. This vulnerability affects Fireware OS 11.9 up to and including 11.12.4_Update1, 12.0 up to and including 12.11.7 and 2025.1 up to and including 2026.1.1.

Detalles CVE

Puntuacion CVSS v3.17.2
SeveridadHIGH
Vector CVSSCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Vector de ataqueNETWORK
ComplejidadLOW
Privilegios requeridosHIGH
Interaccion usuarioNONE
Publicado3/3/2026
Ultima modificacion3/4/2026
Fuentenvd
Avistamientos honeypot0

Productos afectados

watchguard:firebox_m270watchguard:firebox_m290watchguard:firebox_m295watchguard:firebox_m370watchguard:firebox_m390watchguard:firebox_m395watchguard:firebox_m440watchguard:firebox_m4600watchguard:firebox_m470watchguard:firebox_m4800watchguard:firebox_m495watchguard:firebox_m5600watchguard:firebox_m570watchguard:firebox_m5800watchguard:firebox_m590watchguard:firebox_m595watchguard:firebox_m670watchguard:firebox_m690watchguard:firebox_m695watchguard:firebox_nv5watchguard:firebox_t115-wwatchguard:firebox_t125watchguard:firebox_t125-wwatchguard:firebox_t145watchguard:firebox_t145-wwatchguard:firebox_t15watchguard:firebox_t185watchguard:firebox_t20watchguard:firebox_t25watchguard:firebox_t35watchguard:firebox_t40watchguard:firebox_t45watchguard:firebox_t55watchguard:firebox_t70watchguard:firebox_t80watchguard:firebox_t85watchguard:fireboxcloudwatchguard:fireboxvwatchguard:fireware

Debilidades (CWE)

CWE-787

Referencias

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.