OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-86101

HIGH · CVSS 7.2 EPSS 0.23%

Source: NVD + CISA KEV + EPSS · Published 2026-09-30 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

An improper authorization vulnerability in WatchGuard Fireware OS's SAML login process allows a remote, authenticated user with limited Access Portal permissions to gain unauthorized access to Mobile VPN with SSL via a specially crafted request. This could lead to unauthorized data access and potential network compromise. Organizations using WatchGuard Fireware OS should prioritize patching this vulnerability to mitigate the risk of exploitation.

CVE
CVE-2026-86101
Severity
HIGH
CVSS
7.2
EPSS
0.23%

Original NVD Description

An improper authorization vulnerability in WatchGuard Fireware OS's SAML login process allows a remote, authenticated SAML user with access only to the Access Portal to obtain unauthorized Mobile VPN with SSL access through a specially crafted request.