An Expected Behavior Violation [CWE-440] vulnerability in WatchGuard Fireware OS may allow an attacker to bypass the Fireware OS boot time system integrity check and prevent the Firebox from shutting down in the event of a system integrity check failure. The on-demand system integrity check in the Fireware Web UI will correctly show a failed system integrity check message in the event of a failure.This issue affects Fireware OS: from 12.8.1 through 12.11.4, from 2025.1 through 2025.1.2.
References
| Link | Resource |
|---|---|
| https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2025-00026 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
History
No history.
Information
Published : 2025-12-04 22:15
Updated : 2025-12-10 16:04
NVD link : CVE-2025-13940
Mitre link : CVE-2025-13940
CVE.ORG link : CVE-2025-13940
JSON object : View
Products Affected
watchguard
- fireware
- firebox_t145
- firebox_t85
- firebox_m4600
- firebox_m4800
- firebox_m690
- firebox_t185
- firebox_t55
- firebox_t145-w
- firebox_m370
- firebox_t125
- fireboxv
- firebox_m570
- firebox_m5800
- firebox_t20
- firebox_m670
- firebox_t115-w
- firebox_m390
- firebox_t80
- firebox_t25
- firebox_m270
- fireboxcloud
- firebox_t45
- firebox_t125-w
- firebox_m290
- firebox_m440
- firebox_m5600
- firebox_nv5
- firebox_t40
- firebox_t70
- firebox_m470
- firebox_m590
CWE
CWE-440
Expected Behavior Violation
