A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) used by WatchGuard endpoint security products allows a local, authenticated attacker to bypass the driver's access-control handshake and issue arbitrary privileged commands to the driver, resulting in disclosure of kernel and process memory.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://psirt.watchguard.com/CVE-2026-13043 |
|
History
Thu, 01 Oct 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A missing authentication vulnerability in the Kernel Memory Access Driver (PSKMAD) used by WatchGuard endpoint security products allows a local, authenticated attacker to bypass the driver's access-control handshake and issue arbitrary privileged commands to the driver, resulting in disclosure of kernel and process memory. | |
| Title | WatchGuard Endpoint Security Missing Authentication in Kernel Memory Access Driver Allows Arbitrary Kernel Memory Access | |
| First Time appeared |
Watchguard
Watchguard endpoint Security |
|
| Weaknesses | CWE-306 CWE-798 |
|
| CPEs | cpe:2.3:a:watchguard:endpoint_security:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Watchguard
Watchguard endpoint Security |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: WatchGuard
Published:
Updated: 2026-10-01T16:31:34.559Z
Reserved: 2026-06-23T17:29:47.454Z
Link: CVE-2026-13043
No data.
No data.
No data.
OpenCVE Enrichment
No data.