Warning: Remote Code Execution Vulnerabilities in WatchGuard Agent, Patch Immediately!
ID: b750e9f3-43be-57a4-848a-e7359ae6cd63
STIX ID: report--b750e9f3-43be-57a4-848a-e7359ae6cd63
WatchGuard disclosed two critical vulnerabilities (CVE-2026-57909 — path traversal leading to unauthenticated RCE, and CVE-2026-57910 — improper authentication allowing elevated RCE) in Windows WatchGuard Agent versions prior to 1.25.13.0000; both are high-severity remote code execution issues affecting endpoint products (EDR, FireCloud, MDR, AuthPoint Logon, etc.). WatchGuard and the Centre for Cybersecurity Belgium advise urgent upgrade to Agent version 1.25.13.0000, enhanced monitoring for suspicious activity, and reporting any incidents to CCB, noting that patching does not remediate prior compromises.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
