WatchGuard Fireware OS Stack-Based Buffer Overflow Vulnerability in Certificate Request Command Allowing Arbitrary Code Execution

Vulnerability

A stack-based buffer overflow vulnerability has been identified in WatchGuard Fireware OS versions 12.0 through 12.5.12+701324 and 12.6 through 12.11.2. This vulnerability arises in the certificate request command, where an authenticated privileged user could execute arbitrary code by sending specially crafted CLI commands.

Impact

Exploitation of this vulnerability could lead to authenticated privileged users executing arbitrary code on the affected device.

Remediation

Users can upgrade to Fireware OS 12.11.3 or, for T15 and T35 models, to Fireware OS 12.5.13. WatchGuard Firebox administrators should also avoid exposing management interfaces to untrusted networks and can refer to WatchGuard's Firebox Remote Management Best Practices for additional guidance.

Added: Dec 4, 2025, 10:23 PM
Updated: Dec 4, 2025, 10:23 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
7.5
exploitability
4.0
remediation
7.9
relevance
1.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.