


Perceptive Security
SOC/SIEM Consultancy

WatchGuard Warns of Active Exploitation of Critical Fireware OS VPN Vulnerability
Published:
19 december 2025 om 11:23:00
Alert date:
19 december 2025 om 12:02:35
Source:
thehackernews.com
WatchGuard has released fixes for a critical security vulnerability CVE-2025-14733 (CVSS 9.3) in Fireware OS that is being actively exploited in real-world attacks. The vulnerability is an out-of-bounds write affecting the iked process that allows remote unauthenticated attackers to execute arbitrary code. This represents a significant threat to organizations using affected WatchGuard firewall products with VPN functionality.
Technical details
Mitigation steps:
Affected products:
WatchGuard Fireware OS
Related links:
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
