CVE-2013-6021: Buffer Overflow
Published Oct 19, 2013
·Updated
Buffer overflow in WGagent in WatchGuard WSM and Fireware before 11.8 allows remote attackers to execute arbitrary code via a long sessionid value in a cookie.
Affected Software
12 affected components
WatchGuard Fireware<=11.7.4
WatchGuard Fireware=11.0.2
WatchGuard Fireware=11.1
WatchGuard Fireware=11.2.3
WatchGuard Fireware=11.3
WatchGuard Fireware=11.3.6
WatchGuard Fireware=11.4
WatchGuard Fireware=11.4.2
WatchGuard Fireware=11.5.1
WatchGuard Fireware=11.5.3
WatchGuard Fireware=11.6.6
WatchGuard Fireware=11.7.2
Remediation
Patch Available
Event History
Oct 19, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-6021?
CVE-2013-6021 is considered a critical vulnerability due to the potential for arbitrary code execution.
2
How do I fix CVE-2013-6021?
To resolve CVE-2013-6021, update your WatchGuard Fireware to version 11.8 or later.
3
What systems are affected by CVE-2013-6021?
CVE-2013-6021 affects various versions of WatchGuard Fireware, specifically those prior to version 11.8.
4
Can CVE-2013-6021 be exploited remotely?
Yes, CVE-2013-6021 can be exploited remotely through the manipulation of sessionid values in cookies.
5
What can an attacker achieve through CVE-2013-6021?
An attacker exploiting CVE-2013-6021 can execute arbitrary code on affected systems, compromising their security.