ZDI-26-750: WatchGuard FireWare OS spamd statushdlr Stack-based Buffer Overflow Remote Code Execution Vulnerability
Executive Summary
A stack-based buffer overflow in the spamd statushdlr component of WatchGuard FireWare OS allows authenticated remote attackers to execute arbitrary code. The vulnerability, identified as CVE-2026-18145 and assigned CVSS 7.2, requires authentication and was disclosed by Zero Day Initiative (ZDI-26-750).
Intelligence Metadata - Source Publisher: Zero Day Initiative - Published Date: 2026-09-30T05:00:00+00:00 - Category: cves
Original Description: This vulnerability allows remote attackers to execute arbitrary code on affected installations of WatchGuard FireWare OS. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2026-18145.
"Kindness is the language which the deaf can hear and the blind can see."
— Mark Twain