Medium severity6.5NVD Advisory· Published Feb 24, 2022· Updated Jun 17, 2026
CVE-2022-25290
CVE-2022-25290
Description
WatchGuard Firebox and XTM appliances allow an authenticated remote attacker with unprivileged credentials to retrieve certificate private keys. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
17cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:*+ 13 more
- cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:*range: >=12.0.0,<12.1.3
- cpe:2.3:o:watchguard:fireware:12.1.3:-:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.1.3:u1:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.1.3:u2:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.1.3:u3:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.1.3:u4:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.1.3:u5:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.1.3:u6:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.1.3:u7:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.5.9:-:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.5.9:u1:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.7.2:-:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.7.2:u1:*:*:*:*:*:*
- (no CPE)range: <12.7.2_U2, <12.1.3_U8, <12.5.9_U2
- WatchGuard/Firebox and XTM appliancesdescription
- Range: <12.7.2_U2, <12.1.3_U8, <12.5.9_U2
- Range: <12.7.2_U2, <12.1.3_U8, <12.5.9_U2
Patches
Vulnerability mechanics
References
1- www.watchguard.com/support/release-notes/fireware/12/en-US/EN_ReleaseNotes_Fireware_12_7_2/index.htmlnvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.