CVE-2022-31791: High severity watchguard fireware os vulnerability
WatchGuard Firebox and XTM appliances allow a local attacker (that has already obtained shell access) to elevate their privileges and execute code with root permissions. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-31791?
CVE-2022-31791 is a vulnerability in WatchGuard Firebox and XTM appliances that allows a local attacker with shell access to elevate their privileges and execute code with root permissions.
How severe is CVE-2022-31791?
CVE-2022-31791 has a severity score of 7.8, which is considered high.
Which software versions are affected by CVE-2022-31791?
WatchGuard Fireware versions 12.0.0 to 12.1.4, 12.2.0 to 12.5.10, 12.6.1-u1, 12.6.1-u3, 12.6.3, 12.6.4, 12.7.0-u1, 12.7.1, 12.7.2-u2, and 12.8.0-u1 are affected by CVE-2022-31791.
How can I fix CVE-2022-31791?
You can fix CVE-2022-31791 by updating to Fireware OS versions 12.8.1, 12.5.10, or 12.1.4.
Where can I find more information about CVE-2022-31791?
You can find more information about CVE-2022-31791 on the WatchGuard Advisory page at https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2022-00018