CVE-2026-13043#
WatchGuard Endpoint Security Missing Authentication in Kernel Memory Access Driver Allows Arbitrary Kernel Memory Access
Summary #
A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) used by WatchGuard endpoint security products allows a local, authenticated attacker to bypass the driver's access-control handshake and issue arbitrary privileged commands to the driver, resulting in disclosure of kernel and process memory.
Product status #
| Product | Affected | Not affected |
|---|---|---|
| Endpoint Security | ||
| Windows | >= 0, < 8.00.26.0012 | >= 8.00.26.0012 |
Weakness Type and Impact #
Solution #
Update to a fixed release per the affected-version ranges above.