CVE-2026-57910#
WatchGuard Agent improper authentication allows unauthenticated remote code execution
Summary #
Improper authentication in the WatchGuard Agent allows an unauthenticated attacker with network access to cause the agent to execute arbitrary code with elevated privileges.
Product status #
| Product | Affected | Not affected |
|---|---|---|
| WatchGuard Agent | ||
| Linux | >= 0, < 1.17.01.0000 | >= 1.17.01.0000 |
| macOS | >= 0, < 1.17.21.0000 | >= 1.17.21.0000 |
| Windows | >= 0, < 1.25.13.0000 | >= 1.25.13.0000 |
Weakness Type and Impact #
Exploitation Status #
WatchGuard is not aware of any exploitation of this vulnerability in the wild.
Solution #
WatchGuard Agent 1.17.02.0000, WatchGuard Agent 1.17.21.0000, WatchGuard Agent 1.25.13.0000