Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-13368

WatchGuard Fireware OS contains a race condition leading to a use-after-free vulnerability in LDAP authentication for the Mobile User VPN with IKEv2. A remote unauthenticated attacker could exploit this vulnerability to execute arbitrary code in the context of the iked process on Fireboxes that have a Mobile VPN with IKEv2 configured to use an external LDAP authentication server.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 60.2%
CVSS Severity
CVSS v3 Score 8.1
Products affected by CVE-2026-13368


Contact Us

Shodan ® - All rights reserved