SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-78613

HIGH · CVSS 8.6 EPSS 0.64%

Source: NVD + CISA KEV + EPSS · Published 2026-08-28 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

An authenticated SQL injection vulnerability in the log viewer feature of WatchGuard Dimension allows users with report administration permissions to execute arbitrary commands as the Dimension WebUI process user through specially crafted requests. This high-severity flaw poses significant risks, including potential unauthorized access and control over the system. Organizations using WatchGuard Dimension should prioritize patching this vulnerability to mitigate the risk of exploitation.

CVE
CVE-2026-78613
Severity
HIGH
CVSS
8.6
EPSS
0.64%

Original NVD Description

WatchGuard Dimension contains an authenticated SQL injection vulnerability in the log viewer feature which allows an authenticated user with report administration permissions gain arbitrary command execution as the Dimension WebUI process user by sending specially crafted requests.