As cited
Copy frozen at (site build).
NCSC-2026-0335 [1.00] [M/H] Kwetsbaarheden verholpen in WatchGuard Fireware OS
No summary had been written when this copy was frozen.
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
NCSC-2026-0335 [1.00] [M/H] Kwetsbaarheden verholpen in WatchGuard Fireware OS
WatchGuard released patches for multiple vulnerabilities in Fireware OS affecting the iked process and epm service within Mobile Security. The iked process contains a stack-based buffer overflow, type confusion flaw, and heap overflow that allow unauthenticated attackers to execute arbitrary code with process privileges. The epm service in the deprecated Mobile Security component also contains a stack-based buffer overflow exploitable by unauthenticated remote attackers for code execution and system compromise.
Why it matters: Organizations running WatchGuard firewalls with Fireware OS must apply patches immediately, as unauthenticated attackers can achieve remote code execution and full system control without credentials.
- Source published
- First seen by Cybersecurity Tracker