logo

A Vulnerability in WatchGuard Fireware OS Could Allow for Arbitrary Code Execution.

ID: 9a9b99b6-9a5f-5c81-8520-ddbe329b01e2

STIX ID: report--9a9b99b6-9a5f-5c81-8520-ddbe329b01e2

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2025-12-23

Date Updated: 2026-04-27

...
...

A critical out-of-bounds write vulnerability (CVE-2025-14733) was identified in the WatchGuard Fireware OS iked process that can allow a remote unauthenticated attacker to execute arbitrary code. The flaw affects mobile user VPN and branch office VPN configurations using IKEv2 with dynamic gateway peers, and devices may remain vulnerable even after deleting those configurations if a static gateway peer is still configured.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.