OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2026-95676

HIGH · CVSS 7.5 EPSS 0.38%

Source: NVD + CISA KEV + EPSS · Published 2026-09-23 · Last synced 2026-10-10

CyberRota Analysis

AI-Generated

The WatchGuard AuthPoint Gateway's LDAP Sync feature is vulnerable due to improper authentication, enabling remote attackers to bypass single-factor password verification under certain conditions. Although additional authentication factors remain in place, this flaw poses a significant risk as it could allow unauthorized access to sensitive systems. Organizations using this gateway should prioritize remediation efforts to mitigate potential exploitation.

CVE
CVE-2026-95676
Severity
HIGH
CVSS
7.5
EPSS
0.38%

Original NVD Description

A missing/improper authentication vulnerability in the WatchGuard AuthPoint Gateway's LDAP Sync first-factor authentication allows a remote attacker to bypass single-factor password verification under non-default operating conditions. Additional authentication factors still apply.

Related CVEs

Other vulnerabilities affecting the same vendor(s)