An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via specially crafted IPSec configuration CLI commands.This vulnerability affects Fireware OS 11.0 up to and including 11.12.4+541730, 12.0 up to and including 12.11.4, 12.5 up to and including 12.5.13, and 2025.1 up to and including 2025.1.2.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 04 Dec 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An Out-of-bounds Write vulnerability in WatchGuard Fireware OS's CLI could allow an authenticated privileged user to execute arbitrary code via specially crafted IPSec configuration CLI commands.This vulnerability affects Fireware OS 11.0 up to and including 11.12.4+541730, 12.0 up to and including 12.11.4, 12.5 up to and including 12.5.13, and 2025.1 up to and including 2025.1.2. | |
| Title | WatchGuard Firebox Authenticated Out of Bounds Write in Management CLI IPSec Configuration | |
| First Time appeared |
Watchguard
Watchguard firebox |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:watchguard:firebox:*:*:*:*:*:*:*:11.0 cpe:2.3:a:watchguard:firebox:*:*:*:*:*:*:*:12.0 cpe:2.3:a:watchguard:firebox:*:*:*:*:*:*:*:12.5 cpe:2.3:a:watchguard:firebox:*:*:*:*:*:*:*:2025.1 |
|
| Vendors & Products |
Watchguard
Watchguard firebox |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: WatchGuard
Published:
Updated: 2025-12-04T23:16:42.644Z
Reserved: 2025-10-24T21:35:04.239Z
Link: CVE-2025-12195
No data.
Status : Received
Published: 2025-12-04T22:15:46.920
Modified: 2025-12-04T22:15:46.920
Link: CVE-2025-12195
No data.
OpenCVE Enrichment
No data.
Weaknesses