Vulnerabilities > CVE-2023-26239 - Improper Check for Dropped Privileges vulnerability in Watchguard products

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
watchguard
CWE-273

Summary

An issue was discovered in WatchGuard EPDR 8.0.21.0002. Due to a weak implementation of a password check, it is possible to obtain credentials to access the management console as a non-privileged user.

Common Weakness Enumeration (CWE)