CVE-2026-13050: WatchGuard Firebox networkd Out of Bounds Write Vulnerability
An Out-of-bounds Write vulnerability in WatchGuard Fireware OS networkd process could allow an authenticated privileged user to execute arbitrary code via a specially crafted requests to the Management Web UI.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Mitigate by restricting access to the WatchGuard Firebox Management Web UI to trusted administrators only, so the vulnerability cannot be exploited via specially crafted requests from unauthorized users.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-13050?
CVE-2026-13050 has a severity rating of high with a CVSS score of 8.6.
How do I fix CVE-2026-13050?
To mitigate CVE-2026-13050, update WatchGuard Fireware OS to version 11.12.4_Update2 or later.
Who is affected by CVE-2026-13050?
CVE-2026-13050 affects authenticated privileged users of WatchGuard Fireware OS versions 11.8 to 11.12.4_Update1 and 12.0 up to earlier versions.
What type of vulnerability is CVE-2026-13050?
CVE-2026-13050 is classified as an Out-of-bounds Write vulnerability.
What could an attacker achieve with CVE-2026-13050?
An attacker exploiting CVE-2026-13050 could execute arbitrary code on the affected WatchGuard Fireware OS device.