Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
WatchGuard Patches Firebox Zero-Day Exploited in the Wild

WatchGuard Patches Firebox Zero-Day Exploited in the Wild

Posted on December 22, 2025December 22, 2025 By CWS

WatchGuard has launched patches for a critical-severity vulnerability within the Firebox firewalls, warning that it has been exploited within the wild.

Tracked as CVE-2025-14733 (CVSS rating of 9.3), the zero-day is described as an out-of-bounds write challenge affecting the Fireware OS’s iked course of.

Profitable exploitation of the flaw, WatchGuard says, may enable distant, unauthenticated attackers to execute arbitrary code on susceptible units.

The Shadowserver Basis has reported detecting roughly 125,000 IP addresses related to WatchGuard firewalls affected by CVE-2025-14733, together with almost 40,000 positioned in the US.

“This vulnerability impacts each the cell person VPN with IKEv2 and the department workplace VPN utilizing IKEv2 when configured with a dynamic gateway peer,” WatchGuard’s advisory reads.

In line with the seller, even Firebox situations that had the flawed configuration deleted might be susceptible in the event that they nonetheless have a department workplace VPN to a static gateway peer configured.

“WatchGuard has noticed risk actors actively trying to use this vulnerability within the wild,” the corporate warns.

WatchGuard has supplied indicators-of-attack (IoAs) to assist defenders determine potential exploitation makes an attempt in opposition to susceptible Firebox home equipment.

The exploited Firebox vulnerability impacts Fireware OS variations 11.x, 12.x, and 2025.x, and has been resolved in variations 2025.1.4, 12.11.6, 12.5.15, and 12.3.1_Update4 (B728352). No patch can be launched for Fireware OS 11.x, which has reached end-of-life (EoL).Commercial. Scroll to proceed studying.

On Friday, the US cybersecurity company CISA added CVE-2025-14733 to its Recognized Exploited Vulnerabilities (KEV) catalog, urging federal businesses to handle it inside per week.

Per Binding Operational Directive (BOD) 22-01, federal businesses have three weeks to resolve bugs newly added to KEV, however the severity of the exploited Firebox vulnerability calls for expedited remediation, CISA suggests.

WatchGuard’s Firebox firewalls are designed to guard a corporation’s atmosphere from exterior threats, controlling all inbound and outbound community visitors.

Associated: Important WatchGuard Firebox Vulnerability Exploited in Assaults

Associated: HPE Patches Important Flaw in IT Infrastructure Administration Software program

Associated: CISA Warns of Exploited Flaw in Asus Replace Device

Associated: Gigabyte Rolls Out BIOS Updates to Take away Backdoor From Motherboards

Security Week News Tags:Exploited, Firebox, Patches, WatchGuard, Wild, ZeroDay

Post navigation

Previous Post: Multiple Exim Server Vulnerabilities Let Attackers Seize Control of the Server
Next Post: Ukrainian Nefilim Ransomware Affiliate Pleads Guilty in US

Related Posts

Russian Sandworm Hackers Blamed for Cyberattack on Polish Power Grid Russian Sandworm Hackers Blamed for Cyberattack on Polish Power Grid Security Week News
Cisco Fixes Critical Vulnerabilities in Crosswork, Secure Workload Cisco Fixes Critical Vulnerabilities in Crosswork, Secure Workload Security Week News
Google Chrome 146 Update Fixes Critical Security Flaws Google Chrome 146 Update Fixes Critical Security Flaws Security Week News
M WhatsApp Hack Flops: Only Low-Risk Bugs Disclosed to Meta After Pwn2Own Withdrawal $1M WhatsApp Hack Flops: Only Low-Risk Bugs Disclosed to Meta After Pwn2Own Withdrawal Security Week News
Mazda Says No Data Leakage or Operational Impact From Oracle Hack Mazda Says No Data Leakage or Operational Impact From Oracle Hack Security Week News
54 Charged in US Over ATM Attacks Involving ‘Ploutus’ Malware 54 Charged in US Over ATM Attacks Involving ‘Ploutus’ Malware Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles
  • Critical Vulnerability in Oracle PeopleSoft Exploited Globally
  • Kiteworks Recommends Nine-Hour System Shutdown Amid Cyber Threat
  • New Botnet x47.c Leverages AI for Advanced Cyber Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles
  • Critical Vulnerability in Oracle PeopleSoft Exploited Globally
  • Kiteworks Recommends Nine-Hour System Shutdown Amid Cyber Threat
  • New Botnet x47.c Leverages AI for Advanced Cyber Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark