An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via specially crafted IPSec configuration CLI commands.This vulnerability affects Fireware OS 11.0 up to and including 11.12.4+541730, 12.0 up to and including 12.11.4, 12.5 up to and including 12.5.13, and 2025.1 up to and including 2025.1.2.
Metrics
Affected Vendors & Products
References
History
Fri, 05 Dec 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 04 Dec 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via specially crafted IPSec configuration CLI commands.This vulnerability affects Fireware OS 11.0 up to and including 11.12.4+541730, 12.0 up to and including 12.11.4, 12.5 up to and including 12.5.13, and 2025.1 up to and including 2025.1.2. | |
| Title | WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI IPSec Configuration | |
| First Time appeared |
Watchguard
Watchguard firebox |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:watchguard:firebox:*:*:*:*:*:*:*:11.0 cpe:2.3:a:watchguard:firebox:*:*:*:*:*:*:*:12.0 cpe:2.3:a:watchguard:firebox:*:*:*:*:*:*:*:12.5 cpe:2.3:a:watchguard:firebox:*:*:*:*:*:*:*:2025.1 |
|
| Vendors & Products |
Watchguard
Watchguard firebox |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: WatchGuard
Published: 2025-12-04T21:43:57.162Z
Updated: 2025-12-06T04:55:46.896Z
Reserved: 2025-10-24T21:35:04.239Z
Link: CVE-2025-12195
Updated: 2025-12-05T17:32:19.226Z
Status : Received
Published: 2025-12-04T22:15:46.920
Modified: 2025-12-04T22:15:46.920
Link: CVE-2025-12195
No data.