An Expected Behavior Violation [CWE-440] vulnerability in WatchGuard Fireware OS may allow an attacker to bypass the Fireware OS boot time system integrity check and prevent the Firebox from shutting down in the event of a system integrity check failure. The on-demand system integrity check in the Fireware Web UI will correctly show a failed system integrity check message in the event of a failure.This issue affects Fireware OS: from 12.8.1 through 12.11.4, from 2025.1 through 2025.1.2.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 04 Dec 2025 22:00:00 +0000

Type Values Removed Values Added
Description An Expected Behavior Violation [CWE-440] vulnerability in WatchGuard Fireware OS may allow an attacker to bypass the Fireware OS boot time system integrity check and prevent the Firebox from shutting down in the event of a system integrity check failure. The on-demand system integrity check in the Fireware Web UI will correctly show a failed system integrity check message in the event of a failure.This issue affects Fireware OS: from 12.8.1 through 12.11.4, from 2025.1 through 2025.1.2.
Title WatchGuard Firebox Boot Time System Integrity Check Bypass
First Time appeared Watchguard
Watchguard fireware Os
Weaknesses CWE-440
CPEs cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:12.8.1
cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:2025.1
Vendors & Products Watchguard
Watchguard fireware Os
References
Metrics cvssV4_0

{'score': 6.7, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: WatchGuard

Published:

Updated: 2025-12-05T15:45:09.514Z

Reserved: 2025-12-03T01:10:44.590Z

Link: CVE-2025-13940

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-12-04T22:15:48.140

Modified: 2025-12-04T22:15:48.140

Link: CVE-2025-13940

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses