CVE-2026-41286

medium
Published 2026-05-06 · Modified 2026-05-11
CVSS v3
6.5
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS v2
VIR risk
6.5

Description

Stack-based Buffer Overflow vulnerability in the WatchGuard Agent discovery service on Windows allows Overflow Buffers. An unauthenticated attacker on the same local network could exploit this vulnerability to crash the agent service.

Predictions

Exploit likelihood
65%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: 5d1c2695-1a31-4499-88ae-e847036fd7e3 — https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2026-00011

Application impact

VendorProductVersionsFixed
watchguardagent{"endExcluding":"1.25.03.0000"}1.25.03.0000

References

CWEs

CWE-121

Verify integrity in audit chain (admin only). AS-IS.