CVE-2026-13108: Dimension Denial-of-Service

Published Aug 27, 2026
·
Updated

WatchGuard Dimension is susceptible to a denial-of-service condition when an attacker sends a high volume of TCP SYN packets to the log listening service.

Affected Software

1 affected component
WatchGuard Dimension

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Compensating control

    Protect the WatchGuard Dimension log listening service from TCP SYN flood traffic (high-volume TCP SYN packets) by using network-level rate limiting/traffic filtering so SYN packets are dropped/limited before reaching the log listening service.

Event History

Aug 27, 2026
CVE Published
via MITRE·11:26 PM
Data Sourced
via MITRE·11:26 PM
RemedyDescriptionWeakness

Frequently Asked Questions

1

What access does an attacker need to trigger the condition?

The attacker must be able to send a high volume of TCP SYN packets to the WatchGuard Dimension log listening service.

2

Which systems should be prioritized for exposure review?

Prioritize WatchGuard Dimension deployments where the log listening service can receive TCP traffic from untrusted or broadly reachable networks.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203