Description
In exception circumstances, WatchGuard Fireware OS on a FireCluster may use a hard-coded encryption key to encrypt saved credentials for Access Portal resources. This vulnerability does not affect devices that do not support the Access Portal feature or standalone Fireboxes not deployed in a FireCluster.
Related CPE's
o
watchguard
fireware
2
References
Weaknesses
5d1c2695-1a31-4499-88ae-e847036fd7e3
Secondary
CWE-798
CVSS impact metrics
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N
4.4 · Medium
Information
Source identifier
5d1c2695-1a31-4499-88ae-e847036fd7e3
Vulnerability status
Modified
Published
2026-07-03T00:16:52.147Z
3 months agoLast modified
2026-08-28T00:16:48.170Z
1 month ago