<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0" xml:base="https://www.watchguard.com/">
  <channel>
    <title>Security Advisories</title>
    <link>https://www.watchguard.com/</link>
    <description/>
    <language>en</language>
    
    <item>
  <title>WatchGuard Firebox iked Out of Bounds Write Vulnerability</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00015</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox iked Out of Bounds Write Vulnerability&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00015&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-09-17T00:20:10-07:00" title="Wednesday, September 17, 2025 - 00:20" class="datetime"&gt;Wed, 09/17/2025 - 00:20&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-9242&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Critical&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-17T07:00:00Z" class="datetime"&gt;2025-09-17&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-19T16:30:19Z" class="datetime"&gt;2025-09-19&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;True&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;9.3&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;An Out-of-bounds Write vulnerability in the WatchGuard Fireware OS iked process may allow a remote unauthenticated attacker to execute arbitrary code. This vulnerability affects both the mobile user VPN with IKEv2 and the branch office VPN using IKEv2 when configured with a dynamic gateway peer.&lt;br&gt;
If the Firebox was previously configured with the mobile user VPN with IKEv2 or a branch office VPN using IKEv2 to a dynamic gateway peer, and both of those configurations have since been deleted, that Firebox may still be vulnerable if a branch office VPN to a static gateway peer is still configured.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This vulnerability affects Fireware OS 11.10.2 up to and including 11.12.4_Update1, 12.0 up to and including 12.11.3 and 2025.1.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;2025.1&lt;/td&gt;
&lt;td&gt;2025.1.1&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.4&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.3.1 (FIPS-certified release)&lt;/td&gt;
&lt;td&gt;12.3.1_Update3 (B722811)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;11.x&lt;/td&gt;
&lt;td&gt;End of Life&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-workaround field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;If your Firebox is only configured with Branch Office VPN tunnels to static gateway peers and you are not able to immediately upgrade the device to a version of Fireware OS with the vulnerability resolution, you can follow WatchGuard’s recommendations for &lt;a href="https://techsearch.watchguard.com/KB?type=Article&amp;amp;SFDCID=kA1Vr000000DMXNKA4&amp;amp;lang=en_US"&gt;Secure Access to Branch Office VPNs that Use IPSec and IKEv2&lt;/a&gt; as a temporary workaround.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-credits field--type-string field--label-inline"&gt;
      &lt;div class="field__label"&gt;Credits&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;btaol&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 2025.1.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T115-W,
          T125,
          T125-W,
          T145,
          T145-W,
          T185
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Wed, 17 Sep 2025 07:20:10 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">107716 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>Pre-authentication Denial of Service attack in OpenSSH</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00009</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;Pre-authentication Denial of Service attack in OpenSSH&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00009&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-26466&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Dimension,&lt;/span&gt;
                          &lt;span class="field__item"&gt;Firebox,&lt;/span&gt;
                          &lt;span class="field__item"&gt;Secure Wi-Fi&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;5.9&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;A flaw was found in the OpenSSH package. For each ping packet the SSH server receives, a pong packet is allocated in a memory buffer and stored in a queue of packages. It is only freed when the server/client key exchange has finished. A malicious client may keep sending such packages, leading to an uncontrolled increase in memory consumption on the server side. Consequently, the server may become unavailable, resulting in a denial of service attack.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Product&lt;/th&gt;
&lt;th&gt;Version&lt;/th&gt;
&lt;th&gt;Status&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Fireware OS&lt;/td&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;Resolved&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Dimension&lt;/td&gt;
&lt;td&gt;All&lt;/td&gt;
&lt;td&gt;Not Affected&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Secure Wi-Fi&lt;/td&gt;
&lt;td&gt;All&lt;/td&gt;
&lt;td&gt;Not Affected&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Product&lt;/th&gt;
&lt;th&gt;Resolution&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Fireware OS&lt;/td&gt;
&lt;td&gt;12.11.3&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-references field--type-link field--label-inline"&gt;
    &lt;div class="field__label"&gt;References&lt;/div&gt;
          &lt;div class="field__items"&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26466"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-26466&lt;/a&gt;&lt;/div&gt;
              &lt;/div&gt;
      &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Dimension&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Dimension
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          Dimension
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Secure Wi-Fi&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Wi-Fi 6
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          AP130,
          AP330,
          AP332CR,
          AP430CR,
          AP432
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Secure Wi-Fi&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Wi-Fi 4 &amp;amp; 5
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          AP125,
          AP225W,
          AP325,
          AP327X,
          AP420
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105941 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Authenticated Stack Overflow in Certificate Request Command</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00013</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Authenticated Stack Overflow in Certificate Request Command&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00013&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-1547&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;High&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-19T16:30:19Z" class="datetime"&gt;2025-09-19&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;7.5&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:H/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;&lt;em&gt;Updated September 17 2025: Updated to add Fireware OS 12.5.13 as a resolved release&lt;/em&gt;&lt;br&gt;
A stack-based buffer overflow vulnerability [CWE-121] in WatchGuard Fireware OS's certificate request command could allow an authenticated privileged user to execute arbitrary code via specially crafted CLI commands.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.3&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-workaround field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;WatchGuard Firebox administrators should never expose management interfaces, including the command line interface, to untrusted networks. Follow WatchGuard's &lt;a href="https://techsearch.watchguard.com/KB?type=Article&amp;amp;SFDCID=kA10H000000XeAtSAK&amp;amp;lang=en_US"&gt;Firebox Remote Management Best Practices&lt;/a&gt; for additional guidance.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-credits field--type-string field--label-inline"&gt;
      &lt;div class="field__label"&gt;Credits&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Cody Sixteen&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105946 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in SIP Proxy Configuration</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00012</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in SIP Proxy Configuration&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00012&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-6947&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-19T16:30:19Z" class="datetime"&gt;2025-09-19&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;4.8&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;&lt;em&gt;Updated September 17 2025: Updated to add Fireware OS 12.5.13 as a resolved release&lt;/em&gt;&lt;br&gt;
A stored cross-site scripting (XSS) vulnerability exists in the management interface of WatchGuard Firebox appliances via the SIP Proxy configuration. An authenticated remote attacker with administrator privileges could exploit this vulnerability to execute arbitrary JavaScript code in the Firebox management interface of another management user.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.3&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105951 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in IPS Configuration</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00011</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in IPS Configuration&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00011&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-6946&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-19T16:30:19Z" class="datetime"&gt;2025-09-19&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;4.8&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;&lt;em&gt;Updated September 17 2025: Updated to add Fireware OS 12.5.13 as a resolved release&lt;/em&gt;&lt;br&gt;
A stored cross-site scripting (XSS) vulnerability exists in the management interface of WatchGuard Firebox appliances via the IPS configuration. An authenticated remote attacker with administrator privileges could exploit this vulnerability to execute arbitrary JavaScript code in the Firebox management interface of another management user.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.3&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105956 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Authentication Portal Request Smuggling Vulnerability</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00014</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Authentication Portal Request Smuggling Vulnerability&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00014&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-6999&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-19T16:30:19Z" class="datetime"&gt;2025-09-19&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;6.9&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;An HTTP Request Smuggling [CWE-444] vulnerability in the Authentication portal of WatchGuard Fireware OS allows a remote attacker to evade request parameter sanitation and perform a reflected self-Cross-Site Scripting (XSS) attack.&lt;br&gt;
WatchGuard does not believe there is a practical exploit chain with a meaningful impact for this vulnerability.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;Resolved in Fireware OS 12.11.3.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105961 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Leftover Debug Code Vulnerability</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00010</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Leftover Debug Code Vulnerability&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00010&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-4106&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;High&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-19T16:30:19Z" class="datetime"&gt;2025-09-19&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;8.9&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;&lt;em&gt;Updated September 17 2025: Updated to add Fireware OS 12.5.13 as a resolved release&lt;/em&gt;&lt;br&gt;
An authenticated admin user with access to both the management WebUI and command line interface on a Firebox can enable a diagnostic debug shell by uploading a platform and version-specific diagnostic package and executing a leftover diagnostic command.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.3&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105936 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Mobile VPN with SSL Local Privilege Escalation</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00008</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Mobile VPN with SSL Local Privilege Escalation&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00008&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-05-28T07:50:09-07:00" title="Wednesday, May 28, 2025 - 07:50" class="datetime"&gt;Wed, 05/28/2025 - 07:50&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-1910&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;High&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Other Software&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-05-28T14:00:00Z" class="datetime"&gt;2025-05-28&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-19T16:30:19Z" class="datetime"&gt;2025-09-19&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;8.5&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;Updated 2024-06-03 to clarify the potential impact scope for this vulnerability.&lt;br&gt;
The WatchGuard Mobile VPN with SSL Client on Windows allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY/SYSTEM on the Windows machine where the VPN Client is installed.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects the Mobile VPN with SSL Client from 11.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;Resolved in the Mobile VPN with SSL Client version 12.11.3.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-credits field--type-string field--label-inline"&gt;
      &lt;div class="field__label"&gt;Credits&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;AKASEC&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Other Software&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  SSL VPN
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          SSL VPN
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Wed, 28 May 2025 14:50:09 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">104826 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Hotspot Configuration</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00006</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Hotspot Configuration&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00006&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-05-16T12:00:34-07:00" title="Friday, May 16, 2025 - 12:00" class="datetime"&gt;Fri, 05/16/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-4804&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-05-16T19:00:00Z" class="datetime"&gt;2025-05-16&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-19T16:30:19Z" class="datetime"&gt;2025-09-19&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;4.8&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;&lt;em&gt;Updated September 17 2025: Updated to add Fireware OS 12.5.13 as a resolved release&lt;/em&gt;&lt;br&gt;
A stored cross-site scripting (XSS) vulnerability exists in the management interface of WatchGuard Firebox appliances via the Hotspit configuration. An authenticated remote attacker with administrator privileges could exploit this vulnerability to execute arbitrary JavaScript code in the Firebox management interface of another management user.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.1.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.2&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Fri, 16 May 2025 19:00:34 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">104416 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Access Portal Configuration</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00007</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Access Portal Configuration&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00007&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-05-16T12:50:13-07:00" title="Friday, May 16, 2025 - 12:50" class="datetime"&gt;Fri, 05/16/2025 - 12:50&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-4805&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-05-16T19:00:00Z" class="datetime"&gt;2025-05-16&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-19T16:30:19Z" class="datetime"&gt;2025-09-19&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;4.8&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;A stored cross-site scripting (XSS) vulnerability exists in the management interface of WatchGuard Firebox appliances via the Access Portal configuration. An authenticated remote attacker with administrator privileges could exploit this vulnerability to execute arbitrary JavaScript code in the Firebox management interface of another management user.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.1.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;Resolved in Fireware OS 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-credits field--type-string field--label-inline"&gt;
      &lt;div class="field__label"&gt;Credits&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Simone Paganessi (https://www.linkedin.com/in/simonepaganessi)&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Fri, 16 May 2025 19:50:13 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">104421 at https://www.watchguard.com</guid>
    </item>

  </channel>
</rss>
