CVE-2026-13384

EUVD-2026-41454
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS wgagent process could allow an authenticated privileged user to execute arbitrary code via a specially crafted requests to the Management Web UI.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 45.75%
Affected Products (NVD)
VendorProductVersion
watchguardfireware
12.1 ≤
𝑥
< 12.12.1
watchguardfireware
2025.1 ≤
𝑥
< 2026.2.1
watchguardfireware
12.5 ≤
𝑥
≤ 12.5.18
𝑥
= Vulnerable software versions