CVE-2026-13108: Dimension Denial-of-Service
Published Aug 27, 2026
·Updated
WatchGuard Dimension is susceptible to a denial-of-service condition when an attacker sends a high volume of TCP SYN packets to the log listening service.
Affected Software
1 affected component
WatchGuard Dimension
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Protect the WatchGuard Dimension log listening service from TCP SYN flood traffic (high-volume TCP SYN packets) by using network-level rate limiting/traffic filtering so SYN packets are dropped/limited before reaching the log listening service.
Event History
Aug 27, 2026
CVE Published
via MITRE·11:26 PM
Data Sourced
via MITRE·11:26 PM
RemedyDescriptionWeakness
Frequently Asked Questions
1
What access does an attacker need to trigger the condition?
The attacker must be able to send a high volume of TCP SYN packets to the WatchGuard Dimension log listening service.
2
Which systems should be prioritized for exposure review?
Prioritize WatchGuard Dimension deployments where the log listening service can receive TCP traffic from untrusted or broadly reachable networks.