{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-41286","assignerOrgId":"5d1c2695-1a31-4499-88ae-e847036fd7e3","state":"PUBLISHED","assignerShortName":"WatchGuard","dateReserved":"2026-04-20T09:57:56.545Z","datePublished":"2026-05-06T15:46:01.957Z","dateUpdated":"2026-08-10T16:52:32.043Z"},"containers":{"cna":{"providerMetadata":{"orgId":"5d1c2695-1a31-4499-88ae-e847036fd7e3","shortName":"WatchGuard","dateUpdated":"2026-08-10T16:52:32.043Z"},"title":"Stack-based Buffer Overflow in WatchGuard Agent Discovery Service on Windows Causes Denial of Service - Variant B","descriptions":[{"lang":"en","value":"Stack-based Buffer Overflow vulnerability in the WatchGuard Agent discovery service on Windows allows Overflow Buffers. An unauthenticated attacker on the same local network could exploit this vulnerability to crash the agent service."}],"affected":[{"vendor":"WatchGuard","product":"WatchGuard Agent","versions":[{"status":"affected","version":"1.0.0.0","versionType":"semver","lessThan":"1.25.03.0000"}],"defaultStatus":"unaffected","platforms":["Windows"]}],"references":[{"url":"https://psirt.watchguard.com/CVE-2026-41286","tags":["vendor-advisory"]},{"url":"https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2026-00011","tags":["vendor-advisory"]}],"cpeApplicability":[{"operator":"OR","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:watchguard:watchguard_agent:*:*:*:*:*:*:*:*","versionStartIncluding":"1.0.0.0","versionEndExcluding":"1.25.03.0000"}]}]}],"metrics":[{"cvssV4_0":{"version":"4.0","vectorString":"CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N","baseScore":7.1,"baseSeverity":"HIGH"}}],"problemTypes":[{"descriptions":[{"lang":"en","description":"CWE-121","type":"CWE","cweId":"CWE-121"}]}],"solutions":[{"lang":"en","value":"WatchGuard Agent 1.25.03.0000"}],"exploits":[{"lang":"en","value":"WatchGuard is not aware of any exploitation of this vulnerability in the wild."}],"datePublic":"2026-05-06T15:46:01.957Z"},"adp":[{"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2026-05-06T16:11:17.269036Z","id":"CVE-2026-41286","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2026-05-06T16:11:26.423Z"}}]}}