CVE-2025-13940
WatchGuard Firebox Boot Time System Integrity Check Bypass
CVSS Score
0.0
EPSS Score
0.1%
EPSS Percentile
2th
An Expected Behavior Violation [CWE-440] vulnerability in WatchGuard Fireware OS may allow an attacker to bypass the Fireware OS boot time system integrity check and prevent the Firebox from shutting down in the event of a system integrity check failure. The on-demand system integrity check in the Fireware Web UI will correctly show a failed system integrity check message in the event of a failure.
| CWE | CWE-440 |
| Vendor | watchguard |
| Product | fireware os |
| Published | Dec 4, 2025 |
| Last Updated | Aug 10, 2026 |
Stay Ahead of the Next One
Get instant alerts for watchguard fireware os
Be the first to know when new unknown vulnerabilities affecting watchguard fireware os are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
WatchGuard / Fireware OS
2025.1 < 2025.1.3 12.8.1 < 12.11.5
References
Credits
Discovered internally by WatchGuard