CVE-2023-26236: WatchGuard Edr Firmware

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue was discovered in WatchGuard EPDR 8.0.21.0002. Due to a weak implementation of message handling between WatchGuard EPDR processes, it is possible to perform a Local Privilege Escalation on Windows by sending a crafted message to a named pipe.

Affected products

  • WatchGuard Edr Firmware: before 8.00.22.0010 (fixed in 8.00.22.0010)
  • WatchGuard Epdr Firmware: before 8.00.22.0010 (fixed in 8.00.22.0010)
  • WatchGuard Epp Firmware: before 8.00.22.0010 (fixed in 8.00.22.0010)
  • WatchGuard Panda AD360 Firmware: before 8.00.22.0010 (fixed in 8.00.22.0010)

Published 2023-10-05. Last modified 2026-06-17.