CVE-2023-26239

An issue was discovered in WatchGuard EPDR 8.0.21.0002. Due to a weak implementation of a password check, it is possible to obtain credentials to access the management console as a non-privileged user.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 18%
VendorProductVersion
watchguardepp_firmware
𝑥
< 8.00.22.0010
watchguardedr_firmware
𝑥
< 8.00.22.0010
watchguardepdr_firmware
𝑥
< 8.00.22.0010
watchguardpanda_ad360_firmware
𝑥
< 8.00.22.0010
𝑥
= Vulnerable software versions