WatchGuard Fireware OS Out-of-Bounds Write Vulnerability in CLI Management

Vulnerability

A vulnerability allowing out-of-bounds write operations has been identified in the Command Line Interface (CLI) of WatchGuard Fireware OS. This issue could enable an authenticated privileged user to execute arbitrary code by sending a specially crafted CLI command. The vulnerability is present in Fireware OS versions 12.0 through 12.11.4, 12.5 through 12.5.13, and 2025.1 through 2025.1.2.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution on the affected device.

Remediation

Users can upgrade to Fireware OS 2025.1.3, 12.11.5, or 12.5.14 (for T15 & T35 models) to address this vulnerability.

Added: Dec 4, 2025, 10:30 PM
Updated: Dec 4, 2025, 10:30 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
7.5
exploitability
4.4
remediation
7.7
relevance
1.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.