CVE-2024-6594
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Summary
Improper Handling of Exceptional Conditions vulnerability in the WatchGuard Single Sign-On Client on Windows causes the client to crash while handling malformed commands. An attacker with network access to the client could create a denial of service condition for the Single Sign-On service by repeatedly issuing malformed commands.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| WatchGuard | SSO Client | 12.0 <= 12.7 | affected |
Weaknesses
- CWE-755: CWE-755
Workarounds
An attacker must have already established network access to exploit this vulnerability. WatchGuard recommends using Windows Firewall rules to restrict TCP port 4116 network access to the Single Sign-On Client to only allow connections from the Authentication Gateway (SSO Agent). Windows administrators can use Group Policy objects to add Windows firewall rules to their endpoints.
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: yes
- Technical Impact: partial
References
- https://www.redteam-pentesting.de/advisories/rt-sa-2024-008
- https://psirt.watchguard.com/CVE-2024-6594
- https://www.watchguard.com/wgrd-psirt/advisory/wgsa-2024-00016
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.