Skip to content
CodeAuditAgent

CVE-2026-3987

A path traversal vulnerability in the Fireware OS Web UI on WatchGuard Firebox systems may allow a privileged authenticated remote attacker to execute arbitrary code in the context of an elevated system process.

Weakness

A path traversal vulnerability in the Fireware OS Web UI on WatchGuard Firebox systems may allow a privileged authenticated remote attacker to execute arbitrary code in the context of an elevated system process.

Affected products

  • watchguard fireware
  • watchguard firebox_m295
  • watchguard firebox_m395
  • watchguard firebox_m495
  • watchguard firebox_m595
  • watchguard firebox_m695
  • watchguard firebox_t115-w
  • watchguard firebox_t125

References

Find the bug before an attacker does.

Sign in with GitHub and run your first audit in under a minute. The free plan needs no credit card.