PT-2026-55328 · Watchguard · Firebox Management Web Ui
CVSS v4.0
6.9
Medium
| Vector | AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
WatchGuard Firebox Management Web UI (affected versions not specified)
Description
An authenticated administrator can cause a denial-of-service condition in the Fireware Management Web UI. This occurs when malformed or crafted data is sent to the 'put data' endpoint, which performs unsafe deserialization of the input. Unsafe deserialization is a process where untrusted data is used to abuse the logic of an application to execute unauthorized actions or crash the system.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Deserialization of Untrusted Data
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Firebox Management Web Ui