Search/CVE-2026-78103
CVE

CVE-2026-78103

WatchGuard Dimension provides a client-side lock/unlock UI control for management changes. The server-side configuration endpoint does not enforce this lock/unlock workflow state, allowing an authenticated administrator to submit configuration changes directly to the endpoint without first completing the UI unlock step. This allows an authenticated read-write administrator session to bypass the intended editing workflow and overwrite configuration changes being made by another concurrent administrator session.

CVSS v3.1
EPSS
0.29%
probability of exploitation in 30 days
CISA KEV
Not listed
no confirmed exploitation reported
News coverage
0
sources referencing this CVE
EPSS Trend
Aug 29, 2026Sep 2, 2026
0.03pp
0.26% → 0.29% over 2 tracked changes
Connections
1 relationships
Timeline
disclosure → media coverage
Aug 28, 2026
Disclosure — published as a CVE record.