vendor:
Fireware AD Helper Component
by:
RedTeam Pentesting GmbH
CVSS
HIGH
Information Disclosure
N/A
CWE
Product Name: Fireware AD Helper Component
Affected Version From: 5.8.5.10233
Affected Version To: 5.8.5.10317
Patch Exists: YES
Related CWE: GENERIC-MAP-NOMATCH
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows
2020
Exploit: WatchGuard Fireware AD Helper Component 5.8.5.10317 – Credential Disclosure
By accessing the AD Helper's web interface, it was discovered that a call to an API endpoint is made, which responds with plaintext credentials to all configured domain controllers. There is no authentication required to access this endpoint.
Mitigation:
Install the fixed version 5.8.5.10317 of the WatchGuard Fireware AD Helper Component.