Skip to content

CVE 2026 87969

psirt.watchguard.com • September 29, 2026

An OS command injection vulnerability in the WatchGuard AP diagnostic CLI allows an authenticated administrator to execute arbitrary operating system commands by supplying crafted input.

Weakness Type and Impact #

CWE CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

CAPEC CAPEC-88 OS Command Injection

Exploitation Status #

WatchGuard thanks Carlos Garrido of Pentraze Cybersecurity for working with us to protect our customers finder

View the canonical record on cve.org

Extracted Entities

Attack Types (1)

Domains (1)

Platforms (1)

Vulnerabilities (1)