rootpwn

critical · CVSS v3 9.8 · CVSS v4 7.4

CVE-2026-95676

A missing/improper authentication vulnerability in the WatchGuard AuthPoint Gateway's LDAP Sync first-factor authenticat…

Description

A missing/improper authentication vulnerability in the WatchGuard AuthPoint Gateway's LDAP Sync first-factor authentication allows a remote attacker to bypass single-factor password verification under non-default operating conditions. Additional authentication factors still apply.

Scores

Severity
critical
CVSS v2
7.5
CVSS v3
9.8
CVSS v4
7.4
EPSS

← All CVEs