Critical WatchGuard Agent Flaws Allow Attackers to Gain Full SYSTEM Privileges
ID: 1158e093-85f8-5a77-8286-66c2c240c96e
STIX ID: report--1158e093-85f8-5a77-8286-66c2c240c96e
Feed Name: Cyber Press
Multiple high-severity vulnerabilities were disclosed in WatchGuard Agent for Windows (affecting versions up to 1.25.02.0000), including chained local privilege escalations (CVE-2026-6787, CVE-2026-6788), an additional LPE (CVE-2026-41288), and two stack-based buffer overflows that allow unauthenticated local-network denial-of-service (CVE-2026-41287, CVE-2026-41286). The vendor patched all issues in version 1.25.03.0000; organizations are urged to apply the update immediately because exploitation can lead to SYSTEM-level control and disabled endpoint protection.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
