CVE-2026-81433High· 8.7▾ TwilightA stack-based buffer overflow vulnerability in WatchGuard Fireware OS's DHCP fingerprinting daemon (fingerd) allows an unauthenticated attacker with adjacent network access to execute arbitrary code or crash the process by sending a spec…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 47.8 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
A stack-based buffer overflow vulnerability in WatchGuard Fireware OS's DHCP fingerprinting daemon (fingerd) allows an unauthenticated attacker with adjacent network access to execute arbitrary code or crash the process by sending a specially crafted DHCP packet.
fireware_os >= 2026.3 < 2026.3.2fireware_os >= 2025.0 < 2026.2.3fireware_os >= 12.0 < 12.12.3Fireware OS 2026.3.2, Fireware OS 2026.2.3, Fireware OS 12.12.3
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-18145High· 8.6Fireware OS Stack-based Buffer Overflow in spamd Allows Remote Code Execution
CVE-2024-5974High· 7.2A buffer overflow in WatchGuard Fireware OS could may allow an authenticated remote attacker with privileged management access to execute arbitrary code with system privileges on the firewall. This issue affects Fireware OS: from 11.9.6 …
CVE-2026-86128High· 8.2Fireware OS NULL Pointer Dereference in NetFlow IPv6 Traffic Processing Allows Remote Denial of Service
CVE-2026-86101High· 7.2Fireware OS Authorization Bypass in SAML Login Allows Unauthorized SSLVPN Access
CVE-2026-86136High· 7.1Fireware OS Missing Authorization in wgagent Management API Allows Denial of Service - Variant A
CVE-2026-86132High· 8.2Fireware OS Pre-Authentication Integer Underflow in iked Allows Denial of Service