VYPR

Firebox Management Web UI

by WatchGuard

CVEs (3)

  • CVE-2026-78008HigAug 28, 2026
    risk 0.56cvss epss 0.00

    A buffer overflow vulnerability in the WatchGuard Fireware OS Management Web UI allows an authenticated administrator with network access to cause a denial of service (DoS) condition or potentially execute arbitrary code by sending specially crafted network traffic.

  • CVE-2026-13054HigJul 3, 2026
    risk 0.47cvss 7.2epss 0.01

    A path traversal vulnerability in the WatchGuard Fireware OS Management Web UI allows a privileged authenticated attacker to write arbitrary files on the Firebox's filesystem.

  • CVE-2026-13371MedJul 3, 2026
    risk 0.32cvss 4.9epss 0.00

    An authenticated administrator can trigger a denial-of-service condition in the Fireware Management Web UI by sending malformed or crafted data to the put_data endpoint, which performs unsafe deserialization of the attacker-supplied input.