WatchGuard TechnologiesCVE-2026-13043
WatchGuard Technologies Endpoint Security: missing authentication
Critical9.3CVE-2026-13043 · Published Oct 1, 2026 · updated Oct 2, 2026
A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) used by WatchGuard endpoint security products allows a local, authenticated attacker to bypass the driver's access-control handshake and issue arbitrary privileged commands to the driver, resulting in disclosure of kernel and process memory.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| Endpoint Security Product | < 8.00.26.0012 | 8.00.26.0012 |
Details and references
More WatchGuard Technologies advisories
All WatchGuard Technologies| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 30 | WatchGuard Technologies Fireware OS: null pointer dereference | High8.7 | 2026.3.2+3 more |
| Sep 30 | WatchGuard Technologies Fireware OS: integer overflow | High8.2 | 2026.3.2+3 more |
| Sep 30 | WatchGuard Technologies Fireware OS: missing authorization | High7.1 | 2026.3.2+3 more |
| Sep 30 | WatchGuard Technologies Fireware OS: missing authorization | High7.1 | 2026.3.2+3 more |
| Sep 30 | WatchGuard Technologies Fireware OS: stack buffer overflow | High8.6 | 2026.3.2+3 more |
| Sep 30 | WatchGuard Technologies Fireware OS: stack buffer overflow | High8.7 | 2026.3.2+2 more |