CISA: WatchGuard RCE flaw now exploited in ransomware attacks
CISA confirms ransomware gangs are exploiting WatchGuard Firebox firewall vulnerability, CVE-2025-14733, affecting Fireware OS 11.x and later.
Intelligence analysis by Qwen 2.5 (3B)

CISA has confirmed that ransomware gangs are exploiting a critical WatchGuard Firebox firewall vulnerability, CVE-2025-14733, affecting Fireware OS 11.x and later.
This is like a secret door in a firewall that bad guys can open to do bad things. WatchGuard found this door and told people to close it, but some bad guys are still using it to break into networks.
Analysis
{"heading":"The WatchGuard RCE Flaw: Background and Impact","subheading":"CVE-2025-14733: A Critical Flaw in WatchGuard Fireware OS","paragraph":["CVE-2025-14733 is a Remote Code Execution (RCE) vulnerability in WatchGuard Fireware OS, affecting versions 11.x and later, including 11.12.4_Update1, 12.x or later (including 12.11.5), and 2025.1 through 2025.1.3.","WatchGuard flagged CVE-2025-14733 as actively exploited in December, but the agency only ordered U.S. federal agencies to secure their systems within a week, as mandated by Binding Operational Directive (BOD) 22-01.","CISA added the flaw to its Known Exploited Vulnerabilities (KEV) catalog in December, and more than 75,000 unpatched Firebox firewalls were found vulnerable to attacks by December."]}
Key points
- CVE-2025-14733 is a critical RCE vulnerability in WatchGuard Fireware OS.
- The vulnerability affects Fireware OS 11.x and later, including 11.12.4_Update1, 12.x or later (including 12.11.5), and 2025.1 through 2025.1.3.
- CISA has added the flaw to its Known Exploited Vulnerabilities (KEV) catalog, and more than 75,000 unpatched Firebox firewalls were found vulnerable to attacks by December.
With more patches and better security practices, the number of vulnerable firewalls can be reduced, and the risk of attacks can be lowered.
If bad guys find new ways to exploit this vulnerability, it could lead to more serious security breaches and data loss.


