Vulnerabilities > Mikrotik

DATE CVE VULNERABILITY TITLE RISK
2019-08-26 CVE-2019-15055 Path Traversal vulnerability in Mikrotik Routeros
MikroTik RouterOS through 6.44.5 and 6.45.x through 6.45.3 improperly handles the disk name, which allows authenticated users to delete arbitrary files.
network
low complexity
mikrotik CWE-22
6.5
2019-07-26 CVE-2019-13955 Uncontrolled Recursion vulnerability in Mikrotik Routeros
Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to stack exhaustion.
network
low complexity
mikrotik CWE-674
6.5
2019-07-26 CVE-2019-13954 Allocation of Resources Without Limits or Throttling vulnerability in Mikrotik Routeros
Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to memory exhaustion.
network
low complexity
mikrotik CWE-770
6.5
2019-07-03 CVE-2019-13074 Allocation of Resources Without Limits or Throttling vulnerability in Mikrotik Routeros
A vulnerability in the FTP daemon on MikroTik routers through 6.44.3 could allow remote attackers to exhaust all available memory, causing the device to reboot because of uncontrolled resource management.
network
low complexity
mikrotik CWE-770
7.5
2019-04-10 CVE-2019-3943 Path Traversal vulnerability in Mikrotik Routeros
MikroTik RouterOS versions Stable 6.43.12 and below, Long-term 6.42.12 and below, and Testing 6.44beta75 and below are vulnerable to an authenticated, remote directory traversal via the HTTP or Winbox interfaces.
network
low complexity
mikrotik CWE-22
8.1
2019-02-20 CVE-2019-3924 Confused Deputy vulnerability in Mikrotik Routeros
MikroTik RouterOS before 6.43.12 (stable) and 6.42.12 (long-term) is vulnerable to an intermediary vulnerability.
network
low complexity
mikrotik CWE-441
7.5
2018-08-23 CVE-2018-1159 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Mikrotik Routeros
Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory corruption vulnerability.
network
low complexity
mikrotik CWE-119
6.5
2018-08-23 CVE-2018-1158 Uncontrolled Recursion vulnerability in Mikrotik Routeros
Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a stack exhaustion vulnerability.
network
low complexity
mikrotik CWE-674
6.5
2018-08-23 CVE-2018-1157 Resource Exhaustion vulnerability in Mikrotik Routeros
Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory exhaustion vulnerability.
network
low complexity
mikrotik CWE-400
6.5
2018-08-23 CVE-2018-1156 Out-of-bounds Write vulnerability in Mikrotik Routeros
Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to stack buffer overflow through the license upgrade interface.
network
low complexity
mikrotik CWE-787
8.8