logo

Critical RCE flaw impacts over 115,000 WatchGuard firewalls

ID: 5d23113a-c0ca-5f02-b770-8adb44dfa6bd

STIX ID: report--5d23113a-c0ca-5f02-b770-8adb44dfa6bd

Feed Name: Bleeping Computer

Threat Score
88/100

Date Published: 2025-12-22

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

WatchGuard Firebox appliances are affected by a critical unauthenticated RCE (CVE-2025-14733) impacting Fireware OS 11.x+, 12.x+, and 2025.1–2025.1.3 when IKEv2 VPN is used; the flaw is being actively exploited, Shadowserver found over 115,000+ exposed instances, WatchGuard published IoCs and mitigations, and CISA added the flaw to its Known Exploited Vulnerabilities catalog and ordered federal patching.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.