logo

Warning: Remote Code Execution Vulnerabilities in WatchGuard Agent, Patch Immediately!

ID: b750e9f3-43be-57a4-848a-e7359ae6cd63

STIX ID: report--b750e9f3-43be-57a4-848a-e7359ae6cd63

Feed Name: Centre for Cybersecurity Belgium Advisories Feed

Threat Score
78/100

Date Published: 2026-08-27

Date Updated: 2026-08-27

...
...

WatchGuard disclosed two critical vulnerabilities (CVE-2026-57909 — path traversal leading to unauthenticated RCE, and CVE-2026-57910 — improper authentication allowing elevated RCE) in Windows WatchGuard Agent versions prior to 1.25.13.0000; both are high-severity remote code execution issues affecting endpoint products (EDR, FireCloud, MDR, AuthPoint Logon, etc.). WatchGuard and the Centre for Cybersecurity Belgium advise urgent upgrade to Agent version 1.25.13.0000, enhanced monitoring for suspicious activity, and reporting any incidents to CCB, noting that patching does not remediate prior compromises.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.