An integer overflow in WatchGuard Firebox and XTM appliances allows an unauthenticated remote attacker to trigger a buffer overflow and potentially execute arbitrary code by sending a malicious request to exposed management ports.
Affected
Fireware OS before 12.8.1, 12.x before 12.1.4, and 12.2.x through 12.5.x before 12.5.10.
Resolution
Fireware OS 12.8.1, 12.5.10 and 12.1.4
Workaround
Follow WatchGuard's recommended best practices for remote management access and do not expose unrestricted management access to the internet.