Impact
A stack‑based buffer overflow exists in the watchful discovery service of the WatchGuard Agent on Windows. An attacker may write data past the bounds of a local buffer, which causes the service to crash. The crash results in a denial of service that can disrupt monitoring or management functions performed by the agent. The weakness is characterized as CWE‑121.
Affected Systems
The flaw affects the WatchGuard Agent software installed on Windows operating systems. No specific version information is disclosed, so all installations of this agent are potentially vulnerable until a patch is applied.
Risk and Exploitability
The CVSS score of 7.1 reflects a moderate to high severity scenario. The vulnerability requires an unauthenticated attacker who has access to the same local network segment as the agent host, and exploitation can be performed without authentication. No default or public exploits are known, and the issue is not listed in the CISA KEV catalog, but the lack of EPSS data means potential exploitation remains uncertain. The impact is limited to the interruption of the agent service, yet it may affect the availability of network‑security services for the organization.
OpenCVE Enrichment