Back to Database
Status published
High
CVE-2024-5974
Firebox Authenticated Buffer Overflow Vulnerability
Vulnerability Description
A buffer overflow in WatchGuard Fireware OS could may allow an authenticated remote attacker with privileged management access to execute arbitrary code with system privileges on the firewall. This issue affects Fireware OS: from 11.9.6 through 12.10.3.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-5974
Credits & Attribution
No credits recorded in the NVD database.
More from WatchGuard
View All →CVE-2025-9242
WatchGuard Firebox iked Out of Bounds Write Vulnerability
Critical
9.3
CVE-2025-6999
WatchGuard Firebox Authentication Portal Request Smuggling Vulnerability
Medium
6.9
CVE-2025-6947
WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in SIP Proxy Configuration
Medium
4.8
CVE-2025-6946
WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in IPS Configuration
Medium
4.8
CVE-2025-4805
WatchGuard Firebox Stored Cross-Site-Scripting (XSS) Vulnerability in Acces Portal Configuration
Medium
4.8
Affected Vendor
WatchGuard
View all reports →Affected Software
Fireware OS
Vulnerable Versions:
11.9.6, 12.6.0
Timeline
Official Publish:
July 9th, 2024
Last Modified:
January 13th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H