CVE-2026-13046
Received
Received - Intake
WatchGuard Fireware OS SAML Session Deserialization RCE
Vulnerability report for CVE-2026-13046, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.
Publication date: 2026-09-30
Last updated on: 2026-09-30
Assigner: WatchGuard Technologies, Inc.
Description
Description
A deserialization of untrusted data vulnerability in WatchGuard Fireware OS's SAML single sign-on session handling (samld) allows an attacker who has already obtained the ability to write files on the appliance to execute arbitrary code in the context of the samld service by causing samld to load a maliciously crafted session file.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| watchguard | fireware_os | to 2026.3.2 (exc) |
| watchguard | fireware_os | to 2026.2.3 (exc) |
| watchguard | fireware_os | to 12.12.3 (exc) |
| watchguard | eucc | to 12.11.10 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-502 | The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid. |