logo

CVE-2025-14733: WatchGuard Firebox RCE Vulnerability

ID: 9e90e3b3-f857-5c53-a145-8f2063cfa4f8

STIX ID: report--9e90e3b3-f857-5c53-a145-8f2063cfa4f8

Feed Name: SOCRadar Blog

Threat Score
90/100

Date Published: 2025-12-23

Date Updated: 2026-04-30

Author: Ameer Owda

...
...

WatchGuard disclosed CVE-2025-14733, a critical unauthenticated remote code execution vulnerability in the iked daemon used for IKEv2 VPN on Firebox appliances; active exploitation has been observed, CISA added the CVE to its KEV catalog, Shadowserver telemetry shows over 115,000 potentially internet-exposed devices, and WatchGuard published patched Fireware releases, mitigation guidance, and IoCs (suspicious IPs, log and process indicators) for detection and response.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.