{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-95676","assignerOrgId":"5d1c2695-1a31-4499-88ae-e847036fd7e3","state":"PUBLISHED","assignerShortName":"WatchGuard","dateReserved":"2026-09-22T13:47:30.359Z","datePublished":"2026-09-23T12:52:04.902Z","dateUpdated":"2026-09-23T15:24:54.616Z"},"containers":{"cna":{"providerMetadata":{"orgId":"5d1c2695-1a31-4499-88ae-e847036fd7e3","shortName":"WatchGuard","dateUpdated":"2026-09-23T12:52:04.902Z"},"title":"AuthPoint Gateway Improper Authentication in LDAP Sync Allows First-Factor Authentication Bypass","descriptions":[{"lang":"en","value":"A missing/improper authentication vulnerability in the WatchGuard AuthPoint Gateway's LDAP Sync first-factor authentication allows a remote attacker to bypass single-factor password verification under non-default operating conditions. Additional authentication factors still apply."}],"affected":[{"vendor":"WatchGuard","product":"AuthPoint Authentication Gateway","versions":[{"status":"affected","version":"4.2.2","versionType":"semver","lessThan":"7.5.1"}],"defaultStatus":"unaffected"}],"references":[{"url":"https://psirt.watchguard.com/CVE-2026-95676","tags":["vendor-advisory"]}],"cpeApplicability":[{"operator":"OR","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:watchguard:authpoint_authentication_gateway:*:*:*:*:*:*:*:*","versionStartIncluding":"4.2.2","versionEndExcluding":"7.5.1"}]}]}],"metrics":[{"cvssV4_0":{"version":"4.0","vectorString":"CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:A/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N","baseScore":7.4,"baseSeverity":"HIGH"}}],"problemTypes":[{"descriptions":[{"lang":"en","description":"CWE-287","type":"CWE","cweId":"CWE-287"},{"lang":"en","description":"CWE-636","type":"CWE","cweId":"CWE-636"}]}],"credits":[{"lang":"en","value":"Discovered internally by WatchGuard","type":"finder"}],"configurations":[{"lang":"en","value":"This vulnerability affects deployments that are configured to sync AuthPoint users from an LDAP source.","supportingMedia":[{"type":"text/html","base64":false,"value":"<p>This vulnerability affects deployments that are configured to sync AuthPoint users from an LDAP source.</p>"}]}],"solutions":[{"lang":"en","value":"AuthPoint Authentication Gateway 7.5.1","supportingMedia":[{"type":"text/html","base64":false,"value":"AuthPoint Authentication Gateway 7.5.1"}]}],"exploits":[{"lang":"en","value":"WatchGuard is not aware of any exploitation of this vulnerability in the wild.","supportingMedia":[{"type":"text/html","base64":false,"value":"WatchGuard is not aware of any exploitation of this vulnerability in the wild."}]}]},"adp":[{"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2026-09-23T15:24:44.392517Z","id":"CVE-2026-95676","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2026-09-23T15:24:54.616Z"}}]}}