CVE-2026-86134
CVE-2026-86134
8.7
HighPublished:
Last updated:
Source:5d1c2695-1a31-4499-88ae-e847036fd7e3
Analyzed
Weakness (CWE)
CVSS Vector
v4.0- Attack Vector
- Network
- Attack Complexity
- Low
- Attack Requirements
- None
- Privileges Required
- None
- User Interaction
- None
- Confidentiality (Vulnerable)
- None
- Integrity (Vulnerable)
- None
- Availability (Vulnerable)
- High
- Confidentiality (Subsequent)
- None
- Integrity (Subsequent)
- None
- Availability (Subsequent)
- None
Description
A NULL pointer dereference vulnerability in the WatchGuard Fireware OS authentication process allows a remote, unauthenticated attacker to crash the management daemon by sending a specially request to the login interface, resulting in a denial of service.
References
5d1c2695-1a31-4499-88ae-e847036fd7e3
https://psirt.watchguard.com/CVE-2026-86134