First published: Thu Oct 05 2023(Updated: )
An issue was discovered in WatchGuard EPDR 8.0.21.0002. It is possible to bypass the defensive capabilities by adding a registry key as SYSTEM.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Watchguard Epp Firmware | <8.00.22.0010 | |
Watchguard Epp | ||
Watchguard Edr Firmware | <8.00.22.0010 | |
Watchguard Edr | ||
Watchguard Epdr Firmware | <8.00.22.0010 | |
WatchGuard EPDR | ||
Watchguard Panda Ad360 Firmware | <8.00.22.0010 | |
Watchguard Panda Ad360 | ||
All of | ||
Watchguard Epp Firmware | <8.00.22.0010 | |
Watchguard Epp | ||
All of | ||
Watchguard Edr Firmware | <8.00.22.0010 | |
Watchguard Edr | ||
All of | ||
Watchguard Epdr Firmware | <8.00.22.0010 | |
WatchGuard EPDR | ||
All of | ||
Watchguard Panda Ad360 Firmware | <8.00.22.0010 | |
Watchguard Panda Ad360 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-26237 is medium.
CVE-2023-26237 allows an attacker to bypass the defensive capabilities in WatchGuard EPDR 8.0.21.0002 by adding a registry key as SYSTEM.
WatchGuard EPDR versions up to and excluding 8.00.22.0010 are affected by CVE-2023-26237.
To fix CVE-2023-26237, it is recommended to update to a version of WatchGuard EPDR that is later than 8.00.22.0010.
More information about CVE-2023-26237 can be found at the official WatchGuard advisory: [https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2023-00005](https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2023-00005)