New critical WatchGuard Firebox firewall flaw exploited in attacks

New critical WatchGuard Firebox firewall flaw exploited in attacks

WatchGuard has issued a warning about a critical remote code execution vulnerability (CVE-2025-14733) affecting its Firebox firewalls, with active exploitation observed in the wild. Organizations running vulnerable firewalls must apply patches or temporary fixes to prevent malicious attacks. #CVE202514733 #FireboxVulnerabilities

Keypoints

  • WatchGuard’s Firebox firewalls are affected by a critical RCE vulnerability, CVE-2025-14733.
  • The flaw exploits an out-of-bounds write vulnerability allowing remote code execution by attackers.
  • Active exploitation has been observed, especially targeting unpatched devices with specific VPN configurations.
  • Organizations are advised to patch immediately or implement workaround steps provided by WatchGuard.
  • Previous similar vulnerabilities have also been exploited, emphasizing the importance of timely updates.

Read More: https://www.bleepingcomputer.com/news/security/watchguard-warns-of-new-rce-flaw-in-firebox-firewalls-exploited-in-attacks/