A stack-based buffer overflow in the epm (Endpoint Protection Manager) service used by the deprecated Mobile Security feature in WatchGuard Fireware OS allows an unauthenticated remote attacker to execute arbitrary code.
Attack Parameters
Impact Assessment
CVSS Vector v4.0
Weakness Type (CWE)
Vulnerable Products 3
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Watchguard Fireware_Os
cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:*
|
12.0
|
12.5.20
|
|
Watchguard Fireware_Os
cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:*
|
2025.0
|
2026.2.2
|
|
Watchguard Fireware_Os
cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:*
|
12.0
|
12.12.2
|