{"id":"CVE-2025-1547","title":"A stack-based buffer overflow vulnerability [CWE-121] in WatchGuard Fireware OS's certificate request command could allow an authenticated privileged user to execute arbitrary code via specially crafted CLI commands.","summary":"A stack-based buffer overflow vulnerability [CWE-121] in WatchGuard Fireware OS's certificate request command could allow an authenticated privileged user to execute arbitrary code via specially crafted CLI commands.","severity":"high","cvss":7.2,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-121"],"vendor":"watchguard","product":"fireware","affected":["fireware >= 12.0.0, < 12.11.3","fireware >= 12.5, < 12.5.13"],"patched":["fireware 12.5.13"],"published":"2025-12-04","updated":"2026-09-25","sourceUpdated":"2026-09-25T23:10:00.463","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-1547","references":[{"url":"https://psirt.watchguard.com/CVE-2025-1547","label":"5d1c2695-1a31-4499-88ae-e847036fd7e3"},{"url":"https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00013","label":"5d1c2695-1a31-4499-88ae-e847036fd7e3"}],"tags":["nvd"],"epss":0.00352,"epssPercentile":0.26215,"ingestedAt":"2026-09-25T23:21:16.882Z","slug":"CVE-2025-1547","body":"## Overview\n\nA stack-based buffer overflow vulnerability [CWE-121] in WatchGuard Fireware OS's certificate request command could allow an authenticated privileged user to execute arbitrary code via specially crafted CLI commands.\n\n## Affected\n\n- `fireware >= 12.0.0, < 12.11.3`\n- `fireware >= 12.5, < 12.5.13`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `fireware 12.5.13`","depth":"twilight","depthScore":40,"depthScoreParts":{"impact":39.6,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}