7.1
/ 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Description
A Cross-Site Request Forgery (CSRF) vulnerability in the WatchGuard Fireware OS WebUI could allow a remote attacker to trigger a denial-of-service (DoS) condition in the Fireware Web UI by convincing an authenticated administrator into visiting a malicious web page.This issue affects Fireware OS: 11.8 through 11.12.4+541730, 12.0 through 12.11.8, and 2025.1 through 2026.1.2.
Basic Information
ID
CVE-2026-4315
Source
WatchGuard
Published
Mar 30, 2026 at 12:38
Modified
Mar 30, 2026 at 13:27
Affected Product
Vendor
WatchGuard
Product
Fireware OS
Version
11.8
Affected Versions
WatchGuard Fireware OS 11.8
WatchGuard Fireware OS 12.0
WatchGuard Fireware OS 12.5
WatchGuard Fireware OS 2025.1
WatchGuard Fireware OS 12.0
WatchGuard Fireware OS 12.5
WatchGuard Fireware OS 2025.1