Threat intelligence dashboard
CVE-2026-87969high

WatchGuard AP Authenticated Command Injection in Diagnostic CLI

An OS command injection vulnerability in the WatchGuard AP diagnostic CLI allows an authenticated administrator to execute arbitrary operating system commands by supplying crafted input.

Risk score

8.6

CVSS 4.0

Vendor
WatchGuard
Product
WatchGuard AP
CWE
CWE-78
Published
Sep 28, 2026
Updated
Sep 28, 2026
CISA KEV
Not flagged

Affected products and versions

WatchGuard AP

WatchGuard

Version / rangeStatusType
1.0 to before 3.4.8affectedsemver

Technical metrics

8.6

CVSS 4.0

Severity
high
Source
WatchGuard
Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N