AI description
CVE-2026-86131 is a code injection vulnerability found in WatchGuard Fireware OS, specifically within its Branch Office VPN (BOVPN) Over TLS client configuration handling. The flaw allows an attacker who controls the remote VPN server to execute arbitrary commands with root privileges on the connecting Firebox appliance. Exploitation of this vulnerability does not require any user interaction or prior privileges. The affected BOVPN over TLS feature operates on a client-server model, typically routing VPN traffic over TCP port 443 to bypass standard network firewalls. WatchGuard has addressed this issue by releasing security updates. The vulnerability is resolved in Fireware OS versions 2026.3.2, 2026.2.3, 12.12.3, and 12.5.21.
- Description
- A code injection vulnerability in WatchGuard Fireware OS's BOVPN Over TLS client configuration handling allows an attacker who controls the remote VPN server to execute arbitrary commands as root on the connecting Firebox.
- Source
- 5d1c2695-1a31-4499-88ae-e847036fd7e3
- NVD status
- Awaiting Analysis
CVSS 4.0
- Type
- Secondary
- Base score
- 9.2
- Impact score
- -
- Exploitability score
- -
- Vector string
- CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
- Severity
- CRITICAL
- 5d1c2695-1a31-4499-88ae-e847036fd7e3
- CWE-94
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
2
Unpatched vulnerabilities don't stay hidden on our atlas. #CVE CRITICAL VULNERABILITY DETECTED CVE ID → CVE-2026-86131 Vendor → Unknown Severity → Critical — CVSS 9.2 Product → Unknown Date → 2026-09-30 A critical vulnerability (Code Injection) has been di
@ThreatAtlas
1 Oct 2026
86 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Warning: #WatchGuard addressed several vulnerabilities in Fireware OS impacting Firebox. #CVE-2026-86131 CVSS: 9.2. Exploitation of this vulnerability results in #RCE. #CVE-2026-81433; #CVE-2026-86104 & #CVE-2026-18145 allow an attacker to cause #DoS! #Patch #Patch #Patch
@CCBalert
1 Oct 2026
241 Impressions
1 Retweet
0 Likes
0 Bookmarks
0 Replies
0 Quotes
⚠️ Vulnerabilidades en productos WatchGuard ❗ CVE-2026-86133 ❗ CVE-2026-86132 ❗ CVE-2026-86131 ➡️ Más info: https://t.co/EQWqH0FQl8 https://t.co/XuoC2aFNZA
@CERTpy
30 Sept 2026
195 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
WatchGuard製品群でHigh以上の脆弱性多数。 そのうち以下の3件は認証情報バイパスやRCEなどでCritical扱い。 CVE-2026-101891 CVE-2026-86102 CVE-2026-86131 WatchGuard Security Advisories https://t.co/NHu8cczvgY
@autumn_good_35
30 Sept 2026
549 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes