OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-13043

CRITICAL · CVSS 9.3 EPSS 0.13%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) of WatchGuard endpoint security products allows local, authenticated attackers to bypass access controls, enabling them to execute arbitrary privileged commands. This could lead to the disclosure of sensitive kernel and process memory, posing a significant risk to system integrity and confidentiality. Organizations utilizing WatchGuard endpoint security solutions should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-13043
Severity
CRITICAL
CVSS
9.3
EPSS
0.13%

Original NVD Description

A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) used by WatchGuard endpoint security products allows a local, authenticated attacker to bypass the driver's access-control handshake and issue arbitrary privileged commands to the driver, resulting in disclosure of kernel and process memory.