Vulnerabilities (CVE)

Filtered by vendor Watchguard Subscribe
Filtered by product Single Sign-on Client
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-6594 1 Watchguard 1 Single Sign-on Client 2026-08-08 N/A 7.5 HIGH
Improper Handling of Exceptional Conditions vulnerability in the WatchGuard Single Sign-On Client on Windows causes the client to crash while handling malformed commands. An attacker with network access to the client could create a denial of service condition for the Single Sign-On service by repeatedly issuing malformed commands.
CVE-2024-6592 1 Watchguard 2 Authentication Gateway, Single Sign-on Client 2026-08-08 N/A 9.1 CRITICAL
An incorrect authorization vulnerability in the protocol communication between the WatchGuard Authentication Gateway (aka Single Sign-On Agent) on Windows and the WatchGuard Single Sign-On Client on Windows and MacOS allows an attacker with network access to forge communications to affected components. In the event an attacker has already gained network access, they could exploit this vulnerability to retrieve authenticated usernames and group memberships from the Single Sign-On Agent or send arbitrary account and group information to the Single Sign-On Agent for their host. This vulnerability cannot be used by an attacker to gain access to user credentials.