PT-2026-82845 · Watchguard · Watchguard Dimension

·

CVE-2026-78195

·

Published

2026-08-27

·

Updated

2026-08-28

CVSS v4.0

5.1

Medium

VectorAV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions WatchGuard Dimension (affected versions not specified)
Description An issue in the Backup Historical Data feature allows an authenticated administrator to execute arbitrary JavaScript in the browser of another user. This is a Cross-Site Scripting (XSS) flaw, which occurs when an application includes untrusted data in a web page without proper validation or escaping, enabling the execution of malicious scripts.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-78195

Affected Products

Watchguard Dimension