High severity7.5NVD Advisory· Published Sep 6, 2022· Updated Jun 17, 2026
CVE-2022-31790
CVE-2022-31790
Description
WatchGuard Firebox and XTM appliances allow an unauthenticated remote attacker to retrieve sensitive authentication server settings by sending a malicious request to exposed authentication endpoints. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
12cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:*range: >=12.0.0,<12.1.4
- cpe:2.3:o:watchguard:fireware:12.6.1:u1:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.6.1:u3:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.6.3:*:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.6.4:*:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.7.0:u1:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.7.1:*:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.7.2:u2:*:*:*:*:*:*
- cpe:2.3:o:watchguard:fireware:12.8.0:u1:*:*:*:*:*:*
- WatchGuard/Firebox and XTM appliancesdescription
Patches
Vulnerability mechanics
References
3- www.ambionics.io/blog/hacking-watchguard-firewallsnvdExploitThird Party Advisory
- www.openwall.com/lists/oss-security/2022/08/30/2nvdMailing ListThird Party Advisory
- www.watchguard.com/wgrd-psirt/advisory/wgsa-2022-00017nvdVendor Advisory
News mentions
0No linked articles in our index yet.