云虫漏洞情报

CVE-2026-13368 - WatchGuard Fireware OS contains a race condition leading to a use-after-free vulnerability in LDAP authentication for the Mobile User VPN with IKEv2. A remote unauthenticated attacker could exploit this vulnerability to execute arbitrary code in the context of the iked process on Fireboxes that have a Mobile VPN with IKEv2 configured to use an external LDAP authentication server. - 漏洞详情

漏洞编号:CVE-2026-13368

风险等级:高危

漏洞来源:CVE

CVE 编号:CVE-2026-13368

CNNVD 编号:-

厂商/产品:watchguard / fireware

影响范围:cpe:2.3:o:watchguard:fireware:*:*:*:*:*:*:*:*

CWE:CWE-416

发布/更新时间:2026-07-03 / 2026-08-28

漏洞描述

WatchGuard Fireware OS contains a race condition leading to a use-after-free vulnerability in LDAP authentication for the Mobile User VPN with IKEv2. A remote unauthenticated attacker could exploit this vulnerability to execute arbitrary code in the context of the iked process on Fireboxes that have a Mobile VPN with IKEv2 configured to use an external LDAP authentication server.

相关链接

相关漏洞

« 返回首页