CVE-2026-86104
published 2026-09-30CVE-2026-86104: An uncontrolled resource consumption vulnerability in the Fireware OS login process (wgagent) allows a remote, unauthenticated attacker to cause a denial of…
PriorityP348high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.36%
27.1th percentile
An uncontrolled resource consumption vulnerability in the Fireware OS login process (wgagent) allows a remote, unauthenticated attacker to cause a denial of service by sending a specially crafted request.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| watchguard | fireware | >= 12.0 < 12.5.21 | 12.5.21 |
| watchguard | fireware | >= 12.12 < 12.12.3 | 12.12.3 |
| watchguard | fireware | >= 2025.0 < 2026.2.3 | 2026.2.3 |
| watchguard | fireware | >= 2026.3 < 2026.3.2 | 2026.3.2 |
| watchguard | fireware_os | >= 12.0 < 12.12.3 | 12.12.3 |
| watchguard | fireware_os | >= 12.0 < 12.5.21 | 12.5.21 |
| watchguard | fireware_os | >= 2025.0 < 2026.2.3 | 2026.2.3 |
| watchguard | fireware_os | >= 2026.3 < 2026.3.2 | 2026.3.2 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv4.08.7HIGHCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
WatchGuard Fireware OS Login Process resource consumption
vuldb·2026-09-30·CVSS 8.7
CVE-2026-86104 [HIGH] WatchGuard Fireware OS Login Process resource consumption
A vulnerability classified as critical was found in WatchGuard Fireware OS. The affected element is an unknown function of the component Login Process. Such manipulation leads to resource consumption.
This vulnerability is traded as CVE-2026-86104. The attack may be launched remotely. There is no exploit available.
GHSA
An uncontrolled resource consumption vulnerability in the Fireware OS login process (wgagent) allows a remote, unauthenticated attacker to cause a denial of service by sending a specially crafted requ
ghsa_unreviewed·2026-09-30
CVE-2026-86104 [HIGH] CWE-400 An uncontrolled resource consumption vulnerability in the Fireware OS login process (wgagent) allows a remote, unauthenticated attacker to cause a denial of service by sending a specially crafted requ
An uncontrolled resource consumption vulnerability in the Fireware OS login process (wgagent) allows a remote, unauthenticated attacker to cause a denial of service by sending a specially crafted request.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-09-30
Published