← Vulnerability feed

Vulnerability record · CVE-2002-1046 · published 4 October 2002

CVE-2002-1046: Watchguard firebox vulnerability

Watchguard · Firebox

Dynamic VPN Configuration Protocol service (DVCP) in Watchguard Firebox firmware 5.x.x allows remote attackers to cause a denial of service (crash) via a malformed packet containing tab characters to TCP port 4110.

5.0 CVSS 2.0 Medium EPSS 1.7% · top 23.2%
5.0CVSS 2.0 base score
1.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
6References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

Dynamic VPN Configuration Protocol service (DVCP) in Watchguard Firebox firmware 5.x.x allows remote attackers to cause a denial of service (crash) via a malformed packet containing tab characters to TCP port 4110.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2002-1046 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2002-1519Rapidstream vulnerabilityFormat string vulnerability in the CLI interface for WatchGuard Firebox Vclass 3.2 and earlier, and RSSA Appliance 3.0.2, allows remote attackers to …EPSS 4.3%10.0CVE-2002-1520Rapidstream vulnerabilityThe CLI interface for WatchGuard Firebox Vclass 3.2 and earlier, and RSSA Appliance 3.0.2, does not properly close the SSH connection when a -N optio…EPSS 2.8%10.0CVE-2002-0528Watchguard soho firewall vulnerabilityWatchguard SOHO firewall 5.0.35 unpredictably disables certain IP restrictions for customized services that were set before the administrator upgrade…EPSS 3.1%10.0CVE-2000-0894Watchguard soho firewall vulnerabilityHTTP server on the WatchGuard SOHO firewall does not properly restrict access to administrative functions such as password resets or rebooting, which…EPSS 1.9%10.0CVE-2000-0895Watchguard soho firewall vulnerabilityBuffer overflow in HTTP server on the WatchGuard SOHO firewall allows remote attackers to cause a denial of service and possibly execute arbitrary co…EPSS 6.2%7.5CVE-2002-1047Watchguard soho firewall vulnerabilityThe FTP service in Watchguard Soho Firewall 5.0.35a allows remote attackers to gain privileges with a correct password but an incorrect user name.EPSS 1.4%5.0CVE-2002-0527Watchguard soho firewall vulnerabilityWatchguard SOHO firewall before 5.0.35 allows remote attackers to cause a denial of service (crash and reboot) when SOHO forwards a packet with bad I…EPSS 1.6%5.0CVE-2001-0049Watchguard soho firewall vulnerabilityWatchGuard SOHO FireWall 2.2.1 and earlier allows remote attackers to cause a denial of service via a large number of GET requests.EPSS 3.1%

Source: NIST National Vulnerability Database (record CVE-2002-1046), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.