PT-2022-20933 · Watchguard · Watchguard Xtm+2

Charles Fol

·

Published

2022-08-31

·

Updated

2022-09-10

·

CVE-2022-31789

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions WatchGuard Firebox and XTM appliances versions prior to 12.1.4 WatchGuard Firebox and XTM appliances versions prior to 12.5.10 WatchGuard Firebox and XTM appliances versions prior to 12.8.1
Description An integer overflow allows an unauthenticated remote attacker to trigger a buffer overflow and potentially execute arbitrary code by sending a malicious request to exposed management ports.
Recommendations For versions prior to 12.1.4, update to Fireware OS 12.1.4 or later. For versions prior to 12.5.10, update to Fireware OS 12.5.10 or later. For versions prior to 12.8.1, update to Fireware OS 12.8.1 or later.

Fix

Integer Overflow

Weakness Enumeration

Related Identifiers

CVE-2022-31789

Affected Products

Fireware Os
Watchguard Firebox
Watchguard Xtm