Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4qgx-7r85-6fpx

Опубликовано: 30 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.1

Описание

A Cross-Site Request Forgery (CSRF) vulnerability in the WatchGuard Fireware OS WebUI could allow a remote attacker to trigger a denial-of-service (DoS) condition in the Fireware Web UI by convincing an authenticated administrator into visiting a malicious web page.This issue affects Fireware OS: 11.8 through 11.12.4+541730, 12.0 through 12.11.8, and 2025.1 through 2026.1.2.

A Cross-Site Request Forgery (CSRF) vulnerability in the WatchGuard Fireware OS WebUI could allow a remote attacker to trigger a denial-of-service (DoS) condition in the Fireware Web UI by convincing an authenticated administrator into visiting a malicious web page.This issue affects Fireware OS: 11.8 through 11.12.4+541730, 12.0 through 12.11.8, and 2025.1 through 2026.1.2.

EPSS

Процентиль: 21%
0.00068
Низкий

7.1 High

CVSS4

Дефекты

CWE-352

Связанные уязвимости

nvd
11 дней назад

A Cross-Site Request Forgery (CSRF) vulnerability in the WatchGuard Fireware OS WebUI could allow a remote attacker to trigger a denial-of-service (DoS) condition in the Fireware Web UI by convincing an authenticated administrator into visiting a malicious web page.This issue affects Fireware OS: 11.8 through 11.12.4+541730, 12.0 through 12.11.8, and 2025.1 through 2026.1.2.

EPSS

Процентиль: 21%
0.00068
Низкий

7.1 High

CVSS4

Дефекты

CWE-352