CVE-2026-13108

Dimension Denial-of-Service

High 8.7 CVSS v4.0 › Published 2026-08-27Updated 2026-08-27

Summary #

WatchGuard Dimension is susceptible to a denial-of-service condition when an attacker sends a high volume of TCP SYN packets to the log listening service.

Impact: An attacker with network access to the Dimension server's listening port can flood it with SYN packets, causing packet loss and reduced availability for legitimate clients attempting to reach the Dimension instance. The severity of impact is reduced when the instance is deployed behind a firewall or on a restricted network segment, as recommended by WatchGuard.

Product status #

ProductAffectedNot affected
Dimension>= 2.0, < 2.3.1>= 2.3.1

Weakness Type and Impact #

Exploitation Status #

WatchGuard is not aware of any exploitation of this vulnerability in the wild.

Solution #

Dimension 2.3.1

Workaround #

The vulnerability exploit requires a high volume of TCP SYN packets over a short duration and is mitigated by deploying the Dimension server behind a firewall that provides rate limiting protections.

References #

    Credits #

    • Alessandro Vannini, IT4YOU Cybersecurityfinder