Impact
The vulnerability exposes a missing authentication check in the Kernel Memory Access Driver (PSKMAD) used by WatchGuard Endpoint Security. A locally authenticated user can bypass the driver’s access‑control handshake and send arbitrary privileged commands to the driver, causing disclosure of kernel and process memory. This results in a high‑severity compromise of confidentiality and gives an attacker a powerful foothold within the system.
Affected Systems
The affected product is WatchGuard Endpoint Security. The vulnerability resides in the PSKMAD driver supplied with that product. No specific product versions are listed in the CNA data, so all installations of this driver are potentially vulnerable until a vendor update is applied.
Risk and Exploitability
The CVSS score of 9.3 indicates critical risk. EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog, but the lack of remote reachability limits exposure to environments where an attacker already has local, authenticated access. Nevertheless, given the kernel‑level impact, the potential for system compromise remains high, so the vulnerability should be treated as a priority remediation item.
OpenCVE Enrichment