Format string vulnerability in the CLI interface for WatchGuard Firebox Vclass 3.2 and earlier, and RSSA Appliance 3.0.2, allows remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in the password parameter.
http://www.securityfocus.com/bid/5814
http://www.iss.net/security_center/static/10217.php
http://archives.neohapsis.com/archives/bugtraq/2002-09/0335.html
http://archives.neohapsis.com/archives/bugtraq/2002-09/0325.html