Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2022-31790

Description

WatchGuard Firebox and XTM appliances allow an unauthenticated remote attacker to retrieve sensitive authentication server settings by sending a malicious request to exposed authentication endpoints. This is fixed in Fireware OS 12.8.1, 12.5.10, and 12.1.4.

POC

Reference

- https://www.ambionics.io/blog/hacking-watchguard-firewalls

Github

- https://github.com/ARPSyndicate/cvemon

- https://github.com/AlexRogalskiy/AlexRogalskiy

- https://github.com/pipiscrew/timeline