CVE-2022-26318
critical · 9.8Actively exploitedOn the CISA Known Exploited Vulnerabilities catalog
Apply updates per vendor instructions.
Added 2022-03-25Remediation due 2022-04-15
On WatchGuard Firebox and XTM appliances, an unauthenticated user can execute arbitrary code, aka FBX-22786. This vulnerability impacts Fireware OS before 12.7.2_U2, 12.x before 12.1.3_U8, and 12.2.x through 12.5.x before 12.5.9_U2.
9.8
CVSS
78.2%
EPSS (exploit prob.)
100th
EPSS percentile
2022-03-04
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| watchguard | fireware | >= 12.0.0, < 12.1.3 |
| watchguard | fireware | >= 12.5, < 12.5.9 |
| watchguard | fireware | >= 12.7.0, < 12.7.2 |
| watchguard | fireware | 12.1.3 |
| watchguard | fireware | 12.1.3 |
| watchguard | fireware | 12.1.3 |
| watchguard | fireware | 12.1.3 |
| watchguard | fireware | 12.1.3 |
| watchguard | fireware | 12.1.3 |
| watchguard | fireware | 12.1.3 |
| watchguard | fireware | 12.1.3 |
| watchguard | fireware | 12.5.9 |
| watchguard | fireware | 12.7.2 |
Check a specific version with /api/v1/cve/match.
References
- https://www.watchguard.com/support/release-notes/fireware/12/en-US/EN_ReleaseNotes_Fireware_12_7_2/index.html#Fireware/en-US/resolved_issues.html
- https://www.watchguard.com/support/release-notes/fireware/12/en-US/EN_ReleaseNotes_Fireware_12_7_2/index.html#Fireware/en-US/resolved_issues.html
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-26318
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2022-26318