Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Fireware OS 2026.3.2, Fireware OS 2026.2.3, Fireware OS 12.12.3, Fireware OS 12.5.21
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://psirt.watchguard.com/CVE-2026-86101 |
|
Wed, 30 Sep 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 29 Sep 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper authorization vulnerability in WatchGuard Fireware OS's SAML login process allows a remote, authenticated SAML user with access only to the Access Portal to obtain unauthorized Mobile VPN with SSL access through a specially crafted request. | |
| Title | Fireware OS Authorization Bypass in SAML Login Allows Unauthorized SSLVPN Access | |
| First Time appeared |
Watchguard
Watchguard fireware Os |
|
| Weaknesses | CWE-285 CWE-863 |
|
| CPEs | cpe:2.3:a:watchguard:fireware_os:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Watchguard
Watchguard fireware Os |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: WatchGuard
Published:
Updated: 2026-09-30T15:28:12.596Z
Reserved: 2026-09-04T22:51:30.090Z
Link: CVE-2026-86101
Updated: 2026-09-30T15:25:30.696Z
Status : Awaiting Analysis
Published: 2026-09-30T00:16:36.283
Modified: 2026-09-30T16:40:50.560
Link: CVE-2026-86101
No data.
OpenCVE Enrichment
Updated: 2026-09-30T08:15:17Z