PT-2025-49166 · Watchguard · Watchguard Fireware

Cody Sixteen

·

Published

2025-07-10

·

Updated

2025-12-05

·

CVE-2025-1547

CVSS v4.0

7.5

High

VectorAV:N/AC:H/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions WatchGuard Fireware OS versions 12.0 through 12.5.12+701324 WatchGuard Fireware OS versions 12.6 through 12.11.2
Description A stack-based buffer overflow exists in the certificate request command of WatchGuard Fireware OS. An authenticated privileged user could potentially execute arbitrary code by using specifically crafted command-line interface (CLI) commands. This issue is due to insufficient bounds checking when handling input, leading to a buffer overflow.
Recommendations Update WatchGuard Fireware OS to a version later than 12.5.12+701324. Update WatchGuard Fireware OS to a version later than 12.11.2.

Fix

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-15458
CVE-2025-1547

Affected Products

Watchguard Fireware