CVE-2026-13043

Summary

A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) used by WatchGuard endpoint security products allows a local, authenticated attacker to bypass the driver's access-control handshake and issue arbitrary privileged commands to the driver, resulting in disclosure of kernel and process memory.

Affected Software

VendorProductVersion RangeStatus
WatchGuardEndpoint Security0 < 8.00.26.0012affected

Weaknesses

  • CWE-306: CWE-306
  • CWE-798: CWE-798

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References