CVE-2026-6788Disclosure(watchguard / agent)

LOWCVSS 7.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch watchguard agent systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Uncontrolled Search Path Element vulnerability in WatchGuard Agent on Windows allows Using Malicious Files.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-427

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • agent

Threat summary

  • Patch or workaround signal is available
  • 6 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • General: 2 classified signals
  • Peaked 4d ago at 2 mentions (2026-05-06); latest day: 1
  • 6 total mentions across 5 days

Affected systems

Vendors
Products
agent

Deep dive

Activity timeline6 mentions / 5d
01122Mentions · 2026-05-06: 2Mentions · 2026-05-07: 1Mentions · 2026-05-14: 1Mentions · 2026-05-20: 1Mentions · 2026-05-30: 1Patch / Workaround · 2026-05-14: 1Technical Details · 2026-05-06: 2Technical Details · 2026-05-07: 1Technical Details · 2026-05-14: 105-0605-0705-1405-2005-30
Signal classification3 categories
Disclosure
350.0%
General
233.3%
Patch
116.7%
Referenced assets6 URLs
Classification over time
DateTotalLabels
2026-05-062
Disclosure2
2026-05-071
General1
2026-05-141
Patch1
2026-05-201
General1
2026-05-301
Disclosure1
Full discourse6 posts
  • Autumn Good@autumn_good_35
    General

    権限昇格2件とDoS2件 CVE-2026-6787, CVE-2026-6788 CVE-2026-41288 CVE-2026-41286 CVE-2026-41287 Security Advisories | WatchGuard Technologies https://www.watchguard.com/wgrd-psirt/advisories

    Post summary

    WatchGuard listed several CVEs, noting two privilege‑escalation and two DoS vulnerabilities, but provides no PoC, exploit code, or patch details.

    00020330
    6.9K followersView on X
  • iototsecnews@iototsecnews
    Patch

    WatchGuard Agent for Windows の複数の脆弱性が FIX:SYSTEM 権限取得の恐れ https://iototsecnews.jp/2026/05/07/watchguard-agent-flaws-allow-attackers-to-gain-full-system-privileges-on-windows/ 今回の脆弱性の原因は、プログラム内部での権限管理やメモリ処理の不備にあります。 CVE-2026-6787/CVE-2026-6788 では複数の小さな不具合が連鎖したことが原因で、また、CVE-2026-41288 ではリソースへの権限割り当てミスが原因で、本来制限されるべき一般ユーザーが管理者権限を得られる状態になっていました。また、 CVE-2026-41286/CVE-2026-41287 では、外部からのデータを受け取る際のメモリ領域の確認が不十分だったことで、サービス停止を招くバッファ・オーバーフローが発生しています。ご利用のチームは、ご注意ください。 #AgentforWindows #CVE20266787 #CVE20266788 #Vulnerability #WatchGuard

    Post summary

    The article announces that multiple WatchGuard Agent for Windows vulnerabilities (CVE-2026-6787, CVE-2026-6788, CVE-2026-41286, CVE-2026-41287, CVE-2026-41288) have been fixed, but does not provide PoC, exploit tools, or evidence of active attacks.

    01000110
    491 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-6788 Uncontrolled Search Path Element vulnerability in WatchGuard Agent on Windows allows Using Malicious Files.This issue affects WatchGuard Agent before 1.25.03.0000. https://www.cve.org/CVERecord?id=CVE-2026-6788

    Post summary

    WatchGuard Agent before version 1.25.03.0000 suffers an uncontrolled search path element vulnerability (CVE-2026-6788), allowing malicious files to be used, but no proof of exploitation or patch information is provided.

    00010122
    57.4K followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    Disclosure

    【脆弱性情報】 CVE-2026-6788 WatchGuard Agentの脆弱性について https://www.cybernote.click/2026/05/21/%e3%80%90%e8%84%86%e5%bc%b1%e6%80%a7%e6%83%85%e5%a0%b1%e3%80%91-cve-2026-6788-watchguard-agent%e3%81%ae%e8%84%86%e5%bc%b1%e6%80%a7%e3%81%ab%e3%81%a4%e3%81%84%e3%81%a6/ #IT #Security #cybersecurity

    Post summary

    The post announces the existence of CVE-2026-6788 affecting the WatchGuard Agent and includes a link for further information.

    0000036
    209 followersView on X
  • CERT-PY@CERTpy
    General

    ⚠️ Vulnerabilidades en productos WatchGuard ❗ CVE-2026-6788 ❗ CVE-2026-6787 ❗ CVE-2026-41288 ➡️ Más info: https://www.cert.gov.py/vulnerabilidades-en-productos-watchguard-4/ https://t.co/8UkUk2fooU

    Post summary

    The post lists three CVE identifiers for WatchGuard products and provides two external links for more information, but offers no technical, exploitation, or patch details.

    00000117
    6.7K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-6788 Uncontrolled Search Path Element vulnerability in WatchGuard Agent on Windows allows Using Malicious Files.This issue affects WatchGuard Agent before 1.25.03.0000. https://www.cve.org/CVERecord?id=CVE-2026-6788 ----- Traducción: CVE-2026-6788 vulnerabil… http://infoflow.cloud`

    Post summary

    The post announces CVE-2026-6788, describing an Uncontrolled Search Path Element flaw in WatchGuard Agent that permits malicious file execution, but provides no PoC, exploit code, or patch information.

    0000037
    75 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appwatchguardagent-windows-

Explore more