An authenticated admin user with access to both the...
        
  High severity
        
          Unreviewed
      
        Published
          Oct 25, 2025 
          to the GitHub Advisory Database
          •
          Updated Oct 25, 2025 
      
  
Description
        Published by the National Vulnerability Database
      Oct 24, 2025 
    
  
        Published to the GitHub Advisory Database
      Oct 25, 2025 
    
  
        Last updated
      Oct 25, 2025 
    
  
An authenticated admin user with access to both the management WebUI and command line interface on a Firebox can enable a diagnostic debug shell by uploading a platform and version-specific diagnostic package and executing a leftover diagnostic command.
This issue affects Fireware OS: from 12.0 before 12.11.2.
References