VYPR

Firebox Management Web UI

by WatchGuard

CVEs (2)

  • CVE-2026-13054Jul 2, 2026
    risk 0.00cvss epss 0.01

    A path traversal vulnerability in the WatchGuard Fireware OS Management Web UI allows a privileged authenticated attacker to write arbitrary files on the Firebox's filesystem. This vulnerability affects Fireware OS 11.0 up to and including 11.12.4_Update1, 12.0 up to and…

  • CVE-2026-13371Jul 2, 2026
    risk 0.00cvss epss 0.00

    An authenticated administrator can trigger a denial-of-service condition in the Fireware Management Web UI by sending malformed or crafted data to the put_data endpoint, which performs unsafe deserialization of the attacker-supplied input.