CVE-2022-26318: WatchGuard Firebox and XTM Appliances Arbitrary Code Execution
On WatchGuard Firebox and XTM appliances, an unauthenticated user can execute arbitrary code, aka FBX-22786. This vulnerability impacts Fireware OS before 12.7.2U2, 12.x before 12.1.3U8, and 12.2.x through 12.5.x before 12.5.9U2.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-26318?
CVE-2022-26318 is a vulnerability that allows an unauthenticated user to execute arbitrary code on WatchGuard Firebox and XTM appliances.
Which products are affected by CVE-2022-26318?
CVE-2022-26318 impacts WatchGuard Firebox and XTM appliances.
What is the severity of CVE-2022-26318?
CVE-2022-26318 has a severity rating of critical, with a value of 9.8 out of 10.
How can I fix CVE-2022-26318?
To fix CVE-2022-26318, update to Fireware OS version 12.7.2_U2, 12.1.3_U8, or 12.5.9_U2 or later.
Where can I find more information about CVE-2022-26318?
You can find more information about CVE-2022-26318 at the following link: [https://www.watchguard.com/support/release-notes/fireware/12/en-US/EN_ReleaseNotes_Fireware_12_7_2/index.html#Fireware/en-US/resolved_issues.html](https://www.watchguard.com/support/release-notes/fireware/12/en-US/EN_ReleaseNotes_Fireware_12_7_2/index.html#Fireware/en-US/resolved_issues.html)