Path Traversal Vulnerability in Fireware OS Web UI on WatchGuard Firebox Systems
CVE-2026-3987
8.6HIGH
What is CVE-2026-3987?
A path traversal vulnerability exists within the Web UI of Fireware OS on WatchGuard Firebox systems that allows a privileged authenticated remote attacker to execute arbitrary code. This vulnerability is present in versions ranging from 12.6.1 to 12.11.8 and 2025.1 to 2026.1.2, potentially leading to elevated privileges within the system process.
Affected Version(s)
Fireware OS 12.6.1 <= 12.11.8
Fireware OS 2025.1 <= 2026.1.2
