<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0" xml:base="https://www.watchguard.com/">
  <channel>
    <title>Security Advisories</title>
    <link>https://www.watchguard.com/</link>
    <description/>
    <language>en</language>
    
    <item>
  <title>WatchGuard Mobile VPN with SSL Local Privilege Escalation</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00016</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Mobile VPN with SSL Local Privilege Escalation&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00016&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-10-29T09:50:10-07:00" title="Wednesday, October 29, 2025 - 09:50" class="datetime"&gt;Wed, 10/29/2025 - 09:50&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-1549&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Other Software&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-10-29T12:00:00Z" class="datetime"&gt;2025-10-29&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-11-07T21:17:35Z" class="datetime"&gt;2025-11-07&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;6.3&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:H&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client on Windows enables a local user to execute arbitrary commands with elevated privileges on the Windows system. This vulnerability is an additional unmitigated attack path for CVE-2024-4944.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;WatchGuard Mobile VPN with SSL for Windows up to and including version 12.10.2&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;WatchGuard Mobile VPN with SSL for Windows version 12.11.3&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-credits field--type-string field--label-inline"&gt;
      &lt;div class="field__label"&gt;Credits&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Defence Tech Malware Lab&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Other Software&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  SSL VPN
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          SSL VPN
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Wed, 29 Oct 2025 16:50:10 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">109721 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox iked Out of Bounds Write Vulnerability</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00015</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox iked Out of Bounds Write Vulnerability&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00015&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-09-17T00:20:10-07:00" title="Wednesday, September 17, 2025 - 00:20" class="datetime"&gt;Wed, 09/17/2025 - 00:20&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-9242&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Critical&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-09-17T07:00:00Z" class="datetime"&gt;2025-09-17&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-11-07T21:17:35Z" class="datetime"&gt;2025-11-07&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;True&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;9.3&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;&lt;em&gt;Updated November 07 2025: Updated to correct an error in the logging level required for the IDi payload size IOA.&lt;/em&gt;&lt;br&gt;
&lt;em&gt;Updated October 21 2025: Updated to provide Indicators of Attack and additional remediation guidance due to potential active exploits in the wild.&lt;/em&gt;&lt;br&gt;
An Out-of-bounds Write vulnerability in the WatchGuard Fireware OS iked process may allow a remote unauthenticated attacker to execute arbitrary code. This vulnerability affects both the mobile user VPN with IKEv2 and the branch office VPN using IKEv2 when configured with a dynamic gateway peer.&lt;br&gt;
If the Firebox was previously configured with the mobile user VPN with IKEv2 or a branch office VPN using IKEv2 to a dynamic gateway peer, and both of those configurations have since been deleted, that Firebox may still be vulnerable if a branch office VPN to a static gateway peer is still configured.&lt;/p&gt;
&lt;h4&gt;Updated October 21 2025&lt;/h4&gt;
&lt;p&gt;We have evidence that suggests this vulnerability is under active exploitation.&lt;/p&gt;
&lt;h2&gt;Indicators of Attack&lt;/h2&gt;
&lt;p&gt;We are providing the following Indicators of Attack (IoAs) to help device owners identify potential attempts to exploit this vulnerability against vulnerable Firebox appliances. These IoAs are only applicable on devices that lack the resolution described later in this advisory.&lt;/p&gt;
&lt;h3&gt;Abnormally large IKE_AUTH request IDi payload&lt;/h3&gt;
&lt;p&gt;With iked diagnostic logging set to the Info logging level, the iked process generates a log message when the Firebox receives an IKE_AUTH request message. An IKE_AUTH request log message with an abnormally large IDi payload size (greater than 100 bytes) is a strong indicator of an attack.&lt;br&gt;
The following example diagnostic log shows an example IDi payload size of 300 bytes.&lt;br&gt;
&lt;code&gt;1970-01-01 01:00:00 iked (203.0.113.1&amp;lt;-&amp;gt;203.0.113.2)"IKE_AUTH request" message has 6 payloads [ IDi(sz=300) CERT(sz=889) SA(sz=44) TSi(sz=24) TSr(sz=24) N(sz=8)]&lt;/code&gt;&lt;/p&gt;
&lt;h3&gt;IKE Process Hang&lt;/h3&gt;
&lt;p&gt;During a successful exploit, the IKED process (responsible for handling IPSec and IKE VPN traffic) will hang, interrupting VPN connections. This is a strong indicator of attack.&lt;/p&gt;
&lt;h3&gt;IKED Process Crash&lt;/h3&gt;
&lt;p&gt;After a failed or successful exploit, the IKED process will crash and generate a fault report on the Firebox. Be aware, there are other situations that could cause the IKED process to crash. This is a weak indicator of attack.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This vulnerability affects Fireware OS 11.10.2 up to and including 11.12.4_Update1, 12.0 up to and including 12.11.3 and 2025.1.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;2025.1&lt;/td&gt;
&lt;td&gt;2025.1.1&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.4&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.3.1 (FIPS-certified release)&lt;/td&gt;
&lt;td&gt;12.3.1_Update3 (B722811)&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;11.x&lt;/td&gt;
&lt;td&gt;End of Life&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;h4&gt;Updated October 21 2025&lt;/h4&gt;
&lt;p&gt;As of this update, in addition to installing the latest Fireware OS release that contains the fix, administrators should take precautions to rotate all locally stored secrets on vulnerable Firebox appliances as described in our &lt;a href="https://techsearch.watchguard.com/KB?type=Article&amp;amp;SFDCID=kA1Vr000000DNMzKAO&amp;amp;lang=en_US"&gt;Best Practices to Rotate Shared Secrets Stored on the Firebox knowledge base article&lt;/a&gt;. This recommendation is out of an abundance of caution due to evidence that this vulnerability is under active exploitation.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-workaround field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;If your Firebox is only configured with Branch Office VPN tunnels to static gateway peers and you are not able to immediately upgrade the device to a version of Fireware OS with the vulnerability resolution, you can follow WatchGuard’s recommendations for &lt;a href="https://techsearch.watchguard.com/KB?type=Article&amp;amp;SFDCID=kA1Vr000000DMXNKA4&amp;amp;lang=en_US"&gt;Secure Access to Branch Office VPNs that Use IPSec and IKEv2&lt;/a&gt; as a temporary workaround.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-credits field--type-string field--label-inline"&gt;
      &lt;div class="field__label"&gt;Credits&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;btaol&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 2025.1.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T115-W,
          T125,
          T125-W,
          T145,
          T145-W,
          T185
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Wed, 17 Sep 2025 07:20:10 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">107716 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in SIP Proxy Configuration</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00012</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in SIP Proxy Configuration&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00012&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-6947&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-11-07T21:17:35Z" class="datetime"&gt;2025-11-07&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;4.8&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;&lt;em&gt;Updated September 17 2025: Updated to add Fireware OS 12.5.13 as a resolved release&lt;/em&gt;&lt;br&gt;
A stored cross-site scripting (XSS) vulnerability exists in the management interface of WatchGuard Firebox appliances via the SIP Proxy configuration. An authenticated remote attacker with administrator privileges could exploit this vulnerability to execute arbitrary JavaScript code in the Firebox management interface of another management user.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.3&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105951 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in IPS Configuration</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00011</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in IPS Configuration&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00011&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-6946&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-11-07T21:17:35Z" class="datetime"&gt;2025-11-07&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;4.8&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;&lt;em&gt;Updated September 17 2025: Updated to add Fireware OS 12.5.13 as a resolved release&lt;/em&gt;&lt;br&gt;
A stored cross-site scripting (XSS) vulnerability exists in the management interface of WatchGuard Firebox appliances via the IPS configuration. An authenticated remote attacker with administrator privileges could exploit this vulnerability to execute arbitrary JavaScript code in the Firebox management interface of another management user.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.3&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105956 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Authentication Portal Request Smuggling Vulnerability</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00014</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Authentication Portal Request Smuggling Vulnerability&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00014&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-6999&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-11-07T21:17:35Z" class="datetime"&gt;2025-11-07&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;6.9&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;An HTTP Request Smuggling [CWE-444] vulnerability in the Authentication portal of WatchGuard Fireware OS allows a remote attacker to evade request parameter sanitation and perform a reflected self-Cross-Site Scripting (XSS) attack.&lt;br&gt;
WatchGuard does not believe there is a practical exploit chain with a meaningful impact for this vulnerability.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;Resolved in Fireware OS 12.11.3.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105961 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Authenticated Stack Overflow in Certificate Request Command</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00013</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Authenticated Stack Overflow in Certificate Request Command&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00013&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-1547&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;High&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-11-07T21:17:35Z" class="datetime"&gt;2025-11-07&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;7.5&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:H/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;&lt;em&gt;Updated September 17 2025: Updated to add Fireware OS 12.5.13 as a resolved release&lt;/em&gt;&lt;br&gt;
A stack-based buffer overflow vulnerability [CWE-121] in WatchGuard Fireware OS's certificate request command could allow an authenticated privileged user to execute arbitrary code via specially crafted CLI commands.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.3&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-workaround field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;WatchGuard Firebox administrators should never expose management interfaces, including the command line interface, to untrusted networks. Follow WatchGuard's &lt;a href="https://techsearch.watchguard.com/KB?type=Article&amp;amp;SFDCID=kA10H000000XeAtSAK&amp;amp;lang=en_US"&gt;Firebox Remote Management Best Practices&lt;/a&gt; for additional guidance.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-credits field--type-string field--label-inline"&gt;
      &lt;div class="field__label"&gt;Credits&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Cody Sixteen&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105946 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Leftover Debug Code Vulnerability</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00010</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Leftover Debug Code Vulnerability&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00010&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-4106&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;High&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-11-07T21:17:35Z" class="datetime"&gt;2025-11-07&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;8.9&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;&lt;em&gt;Updated September 17 2025: Updated to add Fireware OS 12.5.13 as a resolved release&lt;/em&gt;&lt;br&gt;
An authenticated admin user with access to both the management WebUI and command line interface on a Firebox can enable a diagnostic debug shell by uploading a platform and version-specific diagnostic package and executing a leftover diagnostic command.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Vulnerable Version&lt;/th&gt;
&lt;th&gt;Resolved Version&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;12.11.3&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;12.5.x (T15 &amp;amp; T35 models)&lt;/td&gt;
&lt;td&gt;12.5.13&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105936 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>Pre-authentication Denial of Service attack in OpenSSH</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00009</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;Pre-authentication Denial of Service attack in OpenSSH&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00009&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-07-10T12:00:41-07:00" title="Thursday, July 10, 2025 - 12:00" class="datetime"&gt;Thu, 07/10/2025 - 12:00&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-26466&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Dimension,&lt;/span&gt;
                          &lt;span class="field__item"&gt;Firebox,&lt;/span&gt;
                          &lt;span class="field__item"&gt;Secure Wi-Fi&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-07-10T19:00:00Z" class="datetime"&gt;2025-07-10&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;5.9&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;A flaw was found in the OpenSSH package. For each ping packet the SSH server receives, a pong packet is allocated in a memory buffer and stored in a queue of packages. It is only freed when the server/client key exchange has finished. A malicious client may keep sending such packages, leading to an uncontrolled increase in memory consumption on the server side. Consequently, the server may become unavailable, resulting in a denial of service attack.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Product&lt;/th&gt;
&lt;th&gt;Version&lt;/th&gt;
&lt;th&gt;Status&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Fireware OS&lt;/td&gt;
&lt;td&gt;12.x&lt;/td&gt;
&lt;td&gt;Resolved&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Dimension&lt;/td&gt;
&lt;td&gt;All&lt;/td&gt;
&lt;td&gt;Not Affected&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Secure Wi-Fi&lt;/td&gt;
&lt;td&gt;All&lt;/td&gt;
&lt;td&gt;Not Affected&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;table&gt;
&lt;tr&gt;
&lt;th&gt;Product&lt;/th&gt;
&lt;th&gt;Resolution&lt;/th&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td&gt;Fireware OS&lt;/td&gt;
&lt;td&gt;12.11.3&lt;/td&gt;
&lt;/tr&gt;
&lt;/table&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-references field--type-link field--label-inline"&gt;
    &lt;div class="field__label"&gt;References&lt;/div&gt;
          &lt;div class="field__items"&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;a href="https://nvd.nist.gov/vuln/detail/CVE-2025-26466"&gt;https://nvd.nist.gov/vuln/detail/CVE-2025-26466&lt;/a&gt;&lt;/div&gt;
              &lt;/div&gt;
      &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Dimension&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Dimension
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          Dimension
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Secure Wi-Fi&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Wi-Fi 6
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          AP130,
          AP330,
          AP332CR,
          AP430CR,
          AP432
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Secure Wi-Fi&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Wi-Fi 4 &amp;amp; 5
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          AP125,
          AP225W,
          AP325,
          AP327X,
          AP420
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Thu, 10 Jul 2025 19:00:41 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">105941 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Mobile VPN with SSL Local Privilege Escalation</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00008</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Mobile VPN with SSL Local Privilege Escalation&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00008&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-05-28T07:50:09-07:00" title="Wednesday, May 28, 2025 - 07:50" class="datetime"&gt;Wed, 05/28/2025 - 07:50&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-1910&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;High&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Other Software&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-05-28T14:00:00Z" class="datetime"&gt;2025-05-28&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-11-07T21:17:35Z" class="datetime"&gt;2025-11-07&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;8.5&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;Updated 2024-06-03 to clarify the potential impact scope for this vulnerability.&lt;br&gt;
The WatchGuard Mobile VPN with SSL Client on Windows allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY/SYSTEM on the Windows machine where the VPN Client is installed.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects the Mobile VPN with SSL Client from 11.0 up to and including 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;Resolved in the Mobile VPN with SSL Client version 12.11.3.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-credits field--type-string field--label-inline"&gt;
      &lt;div class="field__label"&gt;Credits&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;AKASEC&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Other Software&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  SSL VPN
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          SSL VPN
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Wed, 28 May 2025 14:50:09 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">104826 at https://www.watchguard.com</guid>
    </item>
<item>
  <title>WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Access Portal Configuration</title>
  <link>https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00007</link>
  <description>&lt;span class="field field--name-title field--type-string field--label-hidden"&gt;WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Access Portal Configuration&lt;/span&gt;

  &lt;div class="field field--name-field-adv-id field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Advisory ID&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;WGSA-2025-00007&lt;/div&gt;
          &lt;/div&gt;
&lt;span class="field field--name-uid field--type-entity-reference field--label-hidden"&gt;&lt;span&gt;WatchGuard&lt;/span&gt;&lt;/span&gt;
&lt;span class="field field--name-created field--type-created field--label-hidden"&gt;&lt;time datetime="2025-05-16T12:50:13-07:00" title="Friday, May 16, 2025 - 12:50" class="datetime"&gt;Fri, 05/16/2025 - 12:50&lt;/time&gt;
&lt;/span&gt;

  &lt;div class="field field--name-field-adv-cve field--type-string-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVE&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVE-2025-4805&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-impact field--type-list-integer field--label-inline"&gt;
    &lt;div class="field__label"&gt;Impact&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Medium&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-status field--type-list-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;Status&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;Resolved&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-inline"&gt;
      &lt;div class="field__label"&gt;Product Family&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

  &lt;div class="field field--name-field-adv-published-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Published Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-05-16T19:00:00Z" class="datetime"&gt;2025-05-16&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-updated-date field--type-datetime field--label-inline"&gt;
    &lt;div class="field__label"&gt;Updated Date&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;time datetime="2025-11-07T21:17:35Z" class="datetime"&gt;2025-11-07&lt;/time&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-workaround-available field--type-boolean field--label-inline"&gt;
    &lt;div class="field__label"&gt;Workaround Available&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;False&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-score field--type-decimal field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Score&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;4.8&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="field field--name-field-adv-cvss-vector field--type-string field--label-inline"&gt;
    &lt;div class="field__label"&gt;CVSS Vector&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-body field--type-text-with-summary field--label-inline"&gt;
    &lt;div class="field__label"&gt;Summary&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;A stored cross-site scripting (XSS) vulnerability exists in the management interface of WatchGuard Firebox appliances via the Access Portal configuration. An authenticated remote attacker with administrator privileges could exploit this vulnerability to execute arbitrary JavaScript code in the Firebox management interface of another management user.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-affected field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Affected&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;This issue affects Fireware OS: from 12.0 up to and including 12.11.1.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;

  &lt;div class="clearfix text-formatted field field--name-field-adv-resolution field--type-text-long field--label-inline"&gt;
    &lt;div class="field__label"&gt;Resolution&lt;/div&gt;
                          &lt;div class="field__item odd field__item--1"&gt;&lt;p&gt;Resolved in Fireware OS 12.11.2.&lt;/p&gt;
&lt;/div&gt;
          &lt;/div&gt;
&lt;div class="field field--name-field-adv-credits field--type-string field--label-inline"&gt;
      &lt;div class="field__label"&gt;Credits&lt;/div&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Simone Paganessi (https://www.linkedin.com/in/simonepaganessi)&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;

&lt;div class="field field--name-field-adv-products field--type-entity-reference field--label-above mt-3"&gt;
  &lt;div class="field__label mb-1"&gt;Advisory Product List&lt;/div&gt;
      &lt;table class="striped-table zebra mt-2"&gt;
      &lt;tr class="row head align-items-end"&gt;
        &lt;th class="d-inline column column--family"&gt;Product Family&lt;/th&gt;
        &lt;th class="d-inline column column--branch"&gt;Product Branch&lt;/th&gt;
        &lt;th class="d-inline column column--list column--wide"&gt;Product List&lt;/th&gt;
      &lt;/tr&gt;
              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.5.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T15,
          T35
&lt;/td&gt;
  &lt;/tr&gt;

              


&lt;tr class="node node--type-advisory-product-branch row align-items-center"&gt;
      &lt;td class="d-inline column column--family"&gt;&lt;div class="field field--name-field-adv-product-family field--type-entity-reference field--label-hidden"&gt;
        &lt;div class="field__items d-inline"&gt;
                            &lt;span class="field__item"&gt;Firebox&lt;/span&gt;
        &lt;/div&gt;
  &lt;/div&gt;
&lt;/td&gt;
    &lt;td class="d-inline column column--branch"&gt;  Fireware OS 12.x
&lt;/td&gt;
    &lt;td class="d-inline column column--list column--wide"&gt;          T20,
          T25,
          T40,
          T45,
          T55,
          T70,
          T80,
          T85,
          M270,
          M290,
          M370,
          M390,
          M470,
          M570,
          M590,
          M670,
          M690,
          M440,
          M4600,
          M4800,
          M5600,
          M5800,
          Firebox Cloud,
          Firebox NV5,
          FireboxV
&lt;/td&gt;
  &lt;/tr&gt;

          &lt;/table&gt;
  &lt;/div&gt;
</description>
  <pubDate>Fri, 16 May 2025 19:50:13 +0000</pubDate>
    <dc:creator>WatchGuard</dc:creator>
    <guid isPermaLink="false">104421 at https://www.watchguard.com</guid>
    </item>

  </channel>
</rss>
