CVE-2024-6594: CWE-755 in WatchGuard SSO Client
CVE-2024-6594 is a high severity vulnerability in the WatchGuard Single Sign-On (SSO) Client for Windows version 12.0. It involves improper handling of exceptional conditions, causing the client to crash when processing malformed commands. This can be exploited by an attacker with network access to cause a denial of service (DoS) condition against the SSO service.
AI Analysis
Technical Summary
The vulnerability identified as CVE-2024-6594 (CWE-755) affects WatchGuard SSO Client version 12.0 on Windows. The client improperly handles exceptional conditions triggered by malformed commands, leading to a crash of the SSO client. An unauthenticated attacker with network access can repeatedly send malformed commands to induce a denial of service condition, disrupting the Single Sign-On service availability. There are no known exploits in the wild at this time, and no official patch or remediation information is provided in the available data.
Potential Impact
Successful exploitation results in a denial of service condition by crashing the WatchGuard SSO Client, potentially disrupting authentication services reliant on the SSO client. This could impact user access and operational continuity of systems depending on the SSO service.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until an official fix is available, consider limiting network access to the SSO client to trusted sources only to reduce exposure to malformed command attacks.
CVE-2024-6594: CWE-755 in WatchGuard SSO Client
Description
CVE-2024-6594 is a high severity vulnerability in the WatchGuard Single Sign-On (SSO) Client for Windows version 12.0. It involves improper handling of exceptional conditions, causing the client to crash when processing malformed commands. This can be exploited by an attacker with network access to cause a denial of service (DoS) condition against the SSO service.
CVSS v4.0
Score 8.7high
Affected software
pkg:github/watchguard/sso-clientRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The vulnerability identified as CVE-2024-6594 (CWE-755) affects WatchGuard SSO Client version 12.0 on Windows. The client improperly handles exceptional conditions triggered by malformed commands, leading to a crash of the SSO client. An unauthenticated attacker with network access can repeatedly send malformed commands to induce a denial of service condition, disrupting the Single Sign-On service availability. There are no known exploits in the wild at this time, and no official patch or remediation information is provided in the available data.
Potential Impact
Successful exploitation results in a denial of service condition by crashing the WatchGuard SSO Client, potentially disrupting authentication services reliant on the SSO client. This could impact user access and operational continuity of systems depending on the SSO service.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until an official fix is available, consider limiting network access to the SSO client to trusted sources only to reduce exposure to malformed command attacks.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-4h99-x2cv-q42q
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2024-6594"]
- Ecosystems
- []
- Database Specific Severity
- HIGH
- Cvss Version
- 3.1
Threat ID: 6a77428ebf8831d539b0715a
Added to database: 08/08/2026, 14:51:58 UTC
Last enriched: 08/08/2026, 15:26:06 UTC
Last updated: 08/22/2026, 10:52:03 UTC
Views: 17
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.