← Vulnerability feed

Vulnerability record · CVE-2002-0528 · published 12 August 2002

CVE-2002-0528: Watchguard soho firewall vulnerability

Watchguard · Soho Firewall

Watchguard SOHO firewall 5.0.35 unpredictably disables certain IP restrictions for customized services that were set before the administrator upgrades to 5.0.35, which could allow remote attackers to bypass the intended access control rules.

10.0 CVSS 2.0 High EPSS 3.1% · top 12.6%
10.0CVSS 2.0 base score
3.1%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
8References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

Watchguard SOHO firewall 5.0.35 unpredictably disables certain IP restrictions for customized services that were set before the administrator upgrades to 5.0.35, which could allow remote attackers to bypass the intended access control rules.

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2002-0528 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2000-0894Watchguard soho firewall vulnerabilityHTTP server on the WatchGuard SOHO firewall does not properly restrict access to administrative functions such as password resets or rebooting, which…EPSS 1.9%10.0CVE-2000-0895Watchguard soho firewall vulnerabilityBuffer overflow in HTTP server on the WatchGuard SOHO firewall allows remote attackers to cause a denial of service and possibly execute arbitrary co…EPSS 6.2%7.5CVE-2002-1047Watchguard soho firewall vulnerabilityThe FTP service in Watchguard Soho Firewall 5.0.35a allows remote attackers to gain privileges with a correct password but an incorrect user name.EPSS 1.4%5.0CVE-2002-1046Watchguard firebox vulnerabilityDynamic VPN Configuration Protocol service (DVCP) in Watchguard Firebox firmware 5.x.x allows remote attackers to cause a denial of service (crash) v…EPSS 1.7%5.0CVE-2002-0527Watchguard soho firewall vulnerabilityWatchguard SOHO firewall before 5.0.35 allows remote attackers to cause a denial of service (crash and reboot) when SOHO forwards a packet with bad I…EPSS 1.6%5.0CVE-2001-0049Watchguard soho firewall vulnerabilityWatchGuard SOHO FireWall 2.2.1 and earlier allows remote attackers to cause a denial of service via a large number of GET requests.EPSS 3.1%5.0CVE-2000-0896Watchguard soho firewall vulnerabilityWatchGuard SOHO firewall allows remote attackers to cause a denial of service via a flood of fragmented IP packets, which causes the firewall to drop…EPSS 1.8%

Source: NIST National Vulnerability Database (record CVE-2002-0528), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.