CVE-2026-78499
Last modified
CVE-2026-78499 is a medium-severity vulnerability rated 5.1/10 on the CVSS scale. A server-side request forgery (SSRF) vulnerability WatchGuard Dimension FTP Server Test configuration allows an authenticated privileged attacker to enumerate exposed network services on adjacent network systems.. EPSS estimates a 0.23% chance of exploitation in the next 30 days.
Description
A server-side request forgery (SSRF) vulnerability WatchGuard Dimension FTP Server Test configuration allows an authenticated privileged attacker to enumerate exposed network services on adjacent network systems.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| WatchGuard | Dimension | >= 2.0, < 2.3.1 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-78499?
How severe is CVE-2026-78499?
How do I fix CVE-2026-78499?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-78491Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell…8.2
- CVE-2026-78492Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell…7.4
- CVE-2026-78493Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell…7.8
- CVE-2026-78494Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell…7.4
- CVE-2026-78495A server-side request forgery (SSRF) vulnerability WatchGuar…5.3
- CVE-2026-78498A server-side request forgery (SSRF) vulnerability WatchGuar…5.1
- CVE-2026-7850The WP Magnific Popup WordPress plugin through 1.0 does not …5.9
- CVE-2026-78500A blind server-side request forgery (SSRF) vulnerability Wat…5.1
- CVE-2026-78501Improper neutralization of special elements used in a comman…7.4
- CVE-2026-78502Out-of-bounds read in Microsoft Office Word allows an unauth…6.5
- CVE-2026-78503Out-of-bounds read in Microsoft Office Word allows an unauth…6.5
- CVE-2026-78504Stack-based buffer overflow in Microsoft Office Word allows …8.8
Are you affected by CVE-2026-78499?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
