Vulnerability Details CVE-2022-31789
An integer overflow in WatchGuard Firebox and XTM appliances allows an unauthenticated remote attacker to trigger a buffer overflow and potentially execute arbitrary code by sending a malicious request to exposed management ports. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.072
EPSS Ranking 91.0%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-31789
-
cpe:2.3:o:watchguard:fireware:12.0.0
-
cpe:2.3:o:watchguard:fireware:12.1.3
-
cpe:2.3:o:watchguard:fireware:12.2.0
-
cpe:2.3:o:watchguard:fireware:12.5.7
-
cpe:2.3:o:watchguard:fireware:12.5.9
-
cpe:2.3:o:watchguard:fireware:12.6.1
-
cpe:2.3:o:watchguard:fireware:12.6.3
-
cpe:2.3:o:watchguard:fireware:12.6.4
-
cpe:2.3:o:watchguard:fireware:12.7.0
-
cpe:2.3:o:watchguard:fireware:12.7.1
-
cpe:2.3:o:watchguard:fireware:12.7.2
-
cpe:2.3:o:watchguard:fireware:12.8.0