CVE-2024-6592
CRITICALWatchGuard Authentication Gateway and Single Sign-On Client - Authentication Bypass via Protocol Communication
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-6592. PoCs published by RedTeamPentesting.
AI-analyzed exploit summary This PoC exploits multiple vulnerabilities in Watchguard SSO clients, including authentication bypass (CVE-2024-6593), arbitrary command execution (CVE-2024-6592), and log file retrieval (CVE-2024-6594). It interacts with the Telnet interface of the SSO client to perform these actions.
Description
Incorrect Authorization vulnerability in the protocol communication between the WatchGuard Authentication Gateway (aka Single Sign-On Agent) on Windows and the WatchGuard Single Sign-On Client on Windows and MacOS allows Authentication Bypass.This issue affects the Authentication Gateway: through 12.10.2; Windows Single Sign-On Client: through 12.7; MacOS Single Sign-On Client: through 12.5.4.
Exploits (1)
This PoC exploits multiple vulnerabilities in Watchguard SSO clients, including authentication bypass (CVE-2024-6593), arbitrary command execution (CVE-2024-6592), and log file retrieval (CVE-2024-6594). It interacts with the Telnet interface of the SSO client to perform these actions.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N