WatchGuard 0-day Vulnerability Exploited in the Wild to Hijack Firewalls
ID: a1c70be2-d2eb-5a0a-98d9-16a3be1e68d8
STIX ID: report--a1c70be2-d2eb-5a0a-98d9-16a3be1e68d8
Feed Name: cybersecurityNews.com
WatchGuard has released emergency updates for CVE-2025-14733, a critical (CVSS 9.3) unauthenticated remote code execution flaw in the IKE process of Firebox firewalls that is being actively exploited in the wild; administrators should immediately apply the specified Fireware OS updates (2025.1.4, 12.11.6, 12.5.15), search logs for provided IoCs (suspicious IPs, large CERT payloads, long certificate chains, iked crashes), and rotate any secrets stored on affected devices if compromise is suspected.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
