A Vulnerability in WatchGuard Fireware OS Could Allow for Arbitrary Code Execution.
ID: 9a9b99b6-9a5f-5c81-8520-ddbe329b01e2
STIX ID: report--9a9b99b6-9a5f-5c81-8520-ddbe329b01e2
Feed Name: CISecurity.org Advisories
Threat Score
A critical out-of-bounds write vulnerability (CVE-2025-14733) was identified in the WatchGuard Fireware OS iked process that can allow a remote unauthenticated attacker to execute arbitrary code. The flaw affects mobile user VPN and branch office VPN configurations using IKEv2 with dynamic gateway peers, and devices may remain vulnerable even after deleting those configurations if a static gateway peer is still configured.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
