Show filters
86 Total Results
Displaying 81-86 of 86
Sort by:
Attacker Value
Unknown
CVE-2017-7285
Disclosure Date: March 29, 2017 (last updated November 26, 2024)
A vulnerability in the network stack of MikroTik Version 6.38.5 released 2017-03-09 could allow an unauthenticated remote attacker to exhaust all available CPU via a flood of TCP RST packets, preventing the affected router from accepting new TCP connections.
0
Attacker Value
Unknown
CVE-2017-6444
Disclosure Date: March 12, 2017 (last updated November 26, 2024)
The MikroTik Router hAP Lite 6.25 has no protection mechanism for unsolicited TCP ACK packets in the case of a fast network connection, which allows remote attackers to cause a denial of service (CPU consumption) by sending many ACK packets. After the attacker stops the exploit, the CPU usage is 100% and the router requires a reboot for normal operation.
0
Attacker Value
Unknown
CVE-2017-6297
Disclosure Date: February 27, 2017 (last updated November 26, 2024)
The L2TP Client in MikroTik RouterOS versions 6.83.3 and 6.37.4 does not enable IPsec encryption after a reboot, which allows man-in-the-middle attackers to view transmitted data unencrypted and gain access to networks on the L2TP server by monitoring the packets for the transmitted data and obtaining the L2TP secret.
0
Attacker Value
Unknown
CVE-2015-2350
Disclosure Date: March 19, 2015 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in MikroTik RouterOS 5.0 and earlier allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via a request in the status page to /cfg.
0
Attacker Value
Unknown
CVE-2012-6050
Disclosure Date: November 27, 2012 (last updated October 05, 2023)
The winbox service in MikroTik RouterOS 5.15 and earlier allows remote attackers to cause a denial of service (CPU consumption), read the router version, and possibly have other impacts via a request to download the router's DLLs or plugins, as demonstrated by roteros.dll.
0
Attacker Value
Unknown
CVE-2008-6976
Disclosure Date: August 19, 2009 (last updated October 04, 2023)
MikroTik RouterOS 3.x through 3.13 and 2.x through 2.9.51 allows remote attackers to modify Network Management System (NMS) settings via a crafted SNMP set request.
0