Track vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.3
CVE-2026-19313: WatchGuard Fireware OS permits remote code execution via network traffic
CVE-2026-19313 · published 1 month ago
Summary
The Fireware OS software used in WatchGuard devices can be tricked into running malicious code when it receives specially crafted network messages. An attacker does not need any credentials to exploit this weakness, which could let them take control of the device. Apply the latest security update from WatchGuard as soon as possible to close the gap.
What to do
The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| watchguard | fireware os |
< 2026.2.2 < 12.5.20 |
Original advisory text
Fireware OS Pre-Authentication Heap Buffer Overflow in iked Allows Remote Code Execution
An heap overflow vulnerability in the WatchGuard Fireware OS iked process allows a remote unauthenticated attacker to execute arbitrary code by sending specially crafted network traffic.
References
Internet-facing
3 days
Internal
60 days
- Not known to be exploited
- Can be exploited automatically
- Gives an attacker full control
Severity
9.3
Critical
Type
CWE-122Heap-based Buffer Overflow
CWE-190Integer Overflow
CWE-680Integer Overflow to Buffer Overflow
Timeline
Published28 Aug 2026
Updated27 Sep 2026
First seen29 Aug 2026
Track software like this
Free during beta