SQL Injection Vulnerability in WatchGuard Dimension
CVE-2026-78612
8.6HIGH
What is CVE-2026-78612?
An authenticated SQL injection vulnerability exists in the scheduled report feature of WatchGuard Dimension, which can be exploited by an authenticated user with report administration permissions. This vulnerability allows the attacker to execute arbitrary commands as the Dimension WebUI process user by sending specially crafted requests, potentially compromising the integrity and confidentiality of the system.
Affected Version(s)
Dimension 2.0 < 2.3.1
