CVE-2022-23176

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/02/2022
Last modified:
14/03/2025

Description

WatchGuard Firebox and XTM appliances allow a remote attacker with unprivileged credentials to access the system with a privileged management session via exposed management access. This vulnerability impacts Fireware OS before 12.7.2_U1, 12.x before 12.1.3_U3, and 12.2.x through 12.5.x before 12.5.7_U3.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:* 12.0.0 (including) 12.1.3 (excluding)
cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:* 12.2.0 (including) 12.5.7 (excluding)
cpe:2.3:o:watchguard:fireware:12.1.3:-:*:*:*:*:*:*
cpe:2.3:o:watchguard:fireware:12.1.3:u1:*:*:*:*:*:*
cpe:2.3:o:watchguard:fireware:12.1.3:u2:*:*:*:*:*:*
cpe:2.3:o:watchguard:fireware:12.5.7:-:*:*:*:*:*:*
cpe:2.3:o:watchguard:fireware:12.5.7:u1:*:*:*:*:*:*
cpe:2.3:o:watchguard:fireware:12.5.7:u2:*:*:*:*:*:*
cpe:2.3:o:watchguard:fireware:12.7.2:-:*:*:*:*:*:*