Home/Product/mikrotik routeros
Product

mikrotik routeros

83 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-6443
< 7.20
Mikrotik RouterOS VXLAN Source IP Improper Access Control Vulnerability. This vulnerability allows remote attackers to bypass acce
7.2HIGH
CVE-2024-54952
all versions
MikroTik RouterOS 6.40.5, the SMB service contains a memory corruption vulnerability. Remote, unauthenticated attackers can exploi
7.5HIGH
CVE-2024-54772
>= 6.43 and < 6.49.18
An issue was discovered in the Winbox service of MikroTik RouterOS long-term release v6.43.13 through v6.49.13 and stable v6.43 th
5.4MEDIUM
CVE-2023-32154
< 6.48.7
Mikrotik RouterOS RADVD Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attack
7.5HIGH
CVE-2023-41570
>= 7.1 and < 7.12
MikroTik RouterOS v7.1 to 7.11 was discovered to contain incorrect access control mechanisms in place for the Rest API.
5.3MEDIUM
CVE-2023-30800
>= 6.0 and < 6.49.10
The web server used by MikroTik RouterOS version 6 is affected by a heap memory corruption issue. A remote and unauthenticated att
7.5HIGH
CVE-2023-30799
>= 6.34 and < 6.49.7
MikroTik RouterOS stable before 6.49.7 and long-term through 6.48.6 are vulnerable to a privilege escalation issue. A remote and a
9.1CRITICAL
CVE-2020-20021
<= 6.46.3
An issue discovered in MikroTik Router v6.46.3 and earlier allows attacker to cause denial of service via misconfiguration in the
7.5HIGH
CVE-2023-24094
all versions
An issue in the bridge2 component of MikroTik RouterOS v6.40.5 allows attackers to cause a Denial of Service (DoS) via crafted pac
7.5HIGH
CVE-2022-45315
< 7.6
Mikrotik RouterOs before stable v7.6 was discovered to contain an out-of-bounds read in the snmp process. This vulnerability allow
6.4MEDIUM
CVE-2022-45313
< 7.5
Mikrotik RouterOs before stable v7.5 was discovered to contain an out-of-bounds read in the hotspot process. This vulnerability al
8.8HIGH
CVE-2017-20149
>= 6.38 and < 6.38.5
The Mikrotik RouterOS web server allows memory corruption in releases before Stable 6.38.5 and Long-term 6.37.5, aka Chimay-Red. A
9.8CRITICAL
CVE-2022-36522
<= 6.48.3
Mikrotik RouterOs through stable v6.48.3 was discovered to contain an assertion failure in the component /advanced-tools/nova/bin/
6.5MEDIUM
CVE-2022-34960
all versions
The container package in MikroTik RouterOS 7.4beta4 allows an attacker to create mount points pointing to symbolic links, which re
9.8CRITICAL
CVE-2021-36614
< 6.48.2
Mikrotik RouterOs before stable 6.48.2 suffers from a memory corruption vulnerability in the tr069-client process. An authenticate
6.5MEDIUM
CVE-2021-36613
< 6.48.2
Mikrotik RouterOs before stable 6.48.2 suffers from a memory corruption vulnerability in the ptp process. An authenticated remote
6.5MEDIUM
CVE-2021-41987
all versions
In the SCEP Server of RouterOS in certain Mikrotik products, an attacker can trigger a heap-based buffer overflow that leads to re
8.1HIGH
CVE-2020-22845
all versions
A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted FTP re
7.5HIGH
CVE-2020-22844
all versions
A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted SMB re
7.5HIGH
CVE-2020-20262
< 6.47
Mikrotik RouterOs before 6.47 (stable tree) suffers from an assertion failure vulnerability in the /ram/pckg/security/nova/bin/ips
6.5MEDIUM
CVE-2020-20221
< 6.44.6
Mikrotik RouterOs before 6.44.6 (long-term tree) suffers from an uncontrolled resource consumption vulnerability in the /nova/bin/
6.5MEDIUM
CVE-2020-20219
all versions
Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/igmp-proxy process. An a
6.5MEDIUM
CVE-2020-20249
< 6.47
Mikrotik RouterOs before stable 6.47 suffers from a memory corruption vulnerability in the resolver process. By sending a crafted
6.5MEDIUM
CVE-2020-20248
all versions
Mikrotik RouterOs before stable 6.47 suffers from an uncontrolled resource consumption in the memtest process. An authenticated re
6.5MEDIUM
CVE-2020-20230
< 6.47
Mikrotik RouterOs before stable 6.47 suffers from an uncontrolled resource consumption in the sshd process. An authenticated remot
6.5MEDIUM
CVE-2020-20231
>= 6.44.6 and <= 6.48.3
Mikrotik RouterOs through stable version 6.48.3 suffers from a memory corruption vulnerability in the /nova/bin/detnet process. An
6.5MEDIUM
CVE-2020-20252
< 6.47
Mikrotik RouterOs before stable version 6.47 suffers from a memory corruption vulnerability in the /nova/bin/lcdstat process. An a
6.5MEDIUM
CVE-2020-20250
< 6.47
Mikrotik RouterOs before stable version 6.47 suffers from a memory corruption vulnerability in the /nova/bin/lcdstat process. An a
6.5MEDIUM
CVE-2020-20217
< 6.47
Mikrotik RouterOs before 6.47 (stable tree) suffers from an uncontrolled resource consumption vulnerability in the /nova/bin/route
6.5MEDIUM
CVE-2020-20225
< 6.47
Mikrotik RouterOs before 6.47 (stable tree) suffers from an assertion failure vulnerability in the /nova/bin/user process. An auth
6.5MEDIUM
CVE-2020-20216
all versions
Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/graphing process. An aut
6.5MEDIUM
CVE-2020-20215
all versions
Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/diskd process. An authen
6.5MEDIUM
CVE-2020-20213
all versions
Mikrotik RouterOs 6.44.5 (long-term tree) suffers from an stack exhaustion vulnerability in the /nova/bin/net process. An authenti
6.5MEDIUM
CVE-2020-20212
all versions
Mikrotik RouterOs 6.44.5 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/console process. An auth
6.5MEDIUM
CVE-2020-20211
all versions
Mikrotik RouterOs 6.44.5 (long-term tree) suffers from an assertion failure vulnerability in the /nova/bin/console process. An aut
6.5MEDIUM
CVE-2020-20266
< 6.47
Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/dot1x process. An auth
6.5MEDIUM
CVE-2020-20264
< 6.47
Mikrotik RouterOs before 6.47 (stable tree) in the /ram/pckg/advanced-tools/nova/bin/netwatch process. An authenticated remote att
6.5MEDIUM
CVE-2020-20246
all versions
Mikrotik RouterOs stable 6.46.3 suffers from a memory corruption vulnerability in the mactel process. An authenticated remote atta
6.5MEDIUM
CVE-2020-20245
all versions
Mikrotik RouterOs stable 6.46.3 suffers from a memory corruption vulnerability in the log process. An authenticated remote attacke
6.5MEDIUM
CVE-2020-20227
all versions
Mikrotik RouterOs stable 6.47 suffers from a memory corruption vulnerability in the /nova/bin/diskd process. An authenticated remo
6.5MEDIUM
CVE-2020-20220
< 6.47
Mikrotik RouterOs prior to stable 6.47 suffers from a memory corruption vulnerability in the /nova/bin/bfd process. An authenticat
6.5MEDIUM
CVE-2020-20237
all versions
Mikrotik RouterOs 6.46.3 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/sniffer process. An authent
6.5MEDIUM
CVE-2020-20236
all versions
Mikrotik RouterOs 6.46.3 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/sniffer process. An authent
6.5MEDIUM
CVE-2020-20222
all versions
Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/sniffer process. An auth
6.5MEDIUM
CVE-2020-20214
all versions
Mikrotik RouterOs 6.44.6 (long-term tree) suffers from an assertion failure vulnerability in the btest process. An authenticated r
6.5MEDIUM
CVE-2020-20254
< 6.47
Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/lcdstat process. An au
6.5MEDIUM
CVE-2020-20253
< 6.47
Mikrotik RouterOs before 6.47 (stable tree) suffers from a divison by zero vulnerability in the /nova/bin/lcdstat process. An auth
6.5MEDIUM
CVE-2020-20267
< 6.47
Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/resolver process. An a
6.5MEDIUM
CVE-2020-20265
< 6.47
Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /ram/pckg/wireless/nova/bin/wire
6.5MEDIUM
CVE-2020-20247
< 6.46.5
Mikrotik RouterOs before 6.46.5 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/traceroute process.
6.5MEDIUM
CVE-2020-20218
all versions
Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/traceroute process. An a
6.5MEDIUM
CVE-2021-27221
all versions
MikroTik RouterOS 6.47.9 allows remote authenticated ftp users to create or overwrite arbitrary .rsc files via the /export command
8.1HIGH
CVE-2021-3014
<= 2021-01-04
In MikroTik RouterOS through 2021-01-04, the hotspot login page is vulnerable to reflected XSS via the target parameter.
6.1MEDIUM
CVE-2019-16160
< 6.45.5
An integer underflow in the SMB server of MikroTik RouterOS before 6.45.5 allows remote unauthenticated attackers to crash the ser
7.5HIGH
CVE-2020-11881
>= 6.41.3 and <= 6.46.5
An array index error in MikroTik RouterOS 6.41.3 through 6.46.5, and 7.x through 7.0 Beta5, allows an unauthenticated remote attac
7.5HIGH
CVE-2020-10364
<= 6.44.3
The SSH daemon on MikroTik routers through v6.44.3 could allow remote attackers to generate CPU activity, trigger refusal of new a
7.5HIGH
CVE-2018-5951
all versions
An issue was discovered in Mikrotik RouterOS. Crafting a packet that has a size of 1 byte and sending it to an IPv6 address of a R
7.5HIGH
CVE-2019-3981
< 6.43
MikroTik Winbox 3.20 and below is vulnerable to man in the middle attacks. A man in the middle can downgrade the client's authenti
3.7LOW
CVE-2019-3979
<= 6.45.6
RouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below are vulnerable to a DNS unrelated data attack. The router adds all A
7.5HIGH
CVE-2019-3978
<= 6.45.6
RouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below allow remote unauthenticated attackers to trigger DNS queries via por
7.5HIGH
CVE-2019-3977
<= 6.45.6
RouterOS 6.45.6 Stable, RouterOS 6.44.5 Long-term, and below insufficiently validate where upgrade packages are download from when
7.5HIGH
CVE-2019-3976
<= 6.45.6
RouterOS 6.45.6 Stable, RouterOS 6.44.5 Long-term, and below are vulnerable to an arbitrary directory creation vulnerability via t
8.8HIGH
CVE-2019-15055
<= 6.44.5
MikroTik RouterOS through 6.44.5 and 6.45.x through 6.45.3 improperly handles the disk name, which allows authenticated users to d
6.5MEDIUM
CVE-2019-13955
< 6.44.5
Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to stack exhaustion. By sending a crafted HTTP request, an
6.5MEDIUM
CVE-2019-13954
< 6.44.5
Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to memory exhaustion. By sending a crafted HTTP request, an
6.5MEDIUM
CVE-2019-13074
<= 6.44.3
A vulnerability in the FTP daemon on MikroTik routers through 6.44.3 could allow remote attackers to exhaust all available memory,
7.5HIGH
CVE-2019-3943
<= 6.43.12
MikroTik RouterOS versions Stable 6.43.12 and below, Long-term 6.42.12 and below, and Testing 6.44beta75 and below are vulnerable
8.1HIGH
CVE-2019-3924
< 6.43.12
MikroTik RouterOS before 6.43.12 (stable) and 6.42.12 (long-term) is vulnerable to an intermediary vulnerability. The software wil
7.5HIGH
CVE-2018-1159
< 6.40.9
Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory corruption vulnerability. An authenticated remote attacker ca
6.5MEDIUM
CVE-2018-1158
< 6.40.9
Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a stack exhaustion vulnerability. An authenticated remote attacker can
6.5MEDIUM
CVE-2018-1157
< 6.42.7
Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory exhaustion vulnerability. An authenticated remote attacker ca
6.5MEDIUM
CVE-2018-1156
< 6.42.7
Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to stack buffer overflow through the license upgrade interface. This vuln
8.8HIGH
CVE-2018-14847
<= 6.42
MikroTik RouterOS through 6.42 allows unauthenticated remote attackers to read arbitrary files and remote authenticated attackers
9.1CRITICAL
CVE-2018-10066
all versions
An issue was discovered in MikroTik RouterOS 6.41.4. Missing OpenVPN server certificate verification allows a remote unauthenticat
8.1HIGH
CVE-2018-7445
< 6.41.3
A buffer overflow was found in the MikroTik RouterOS SMB service when processing NetBIOS session request messages. Remote attacker
9.8CRITICAL
CVE-2017-8338
all versions
A vulnerability in MikroTik Version 6.38.5 could allow an unauthenticated remote attacker to exhaust all available CPU via a flood
7.5HIGH
CVE-2017-7285
all versions
A vulnerability in the network stack of MikroTik Version 6.38.5 released 2017-03-09 could allow an unauthenticated remote attacker
7.5HIGH
CVE-2017-6444
all versions
The MikroTik Router hAP Lite 6.25 has no protection mechanism for unsolicited TCP ACK packets in the case of a fast network connec
7.5HIGH
CVE-2017-6297
all versions
The L2TP Client in MikroTik RouterOS versions 6.83.3 and 6.37.4 does not enable IPsec encryption after a reboot, which allows man-
5.9MEDIUM
CVE-2015-2350
<= 5.0
Cross-site request forgery (CSRF) vulnerability in MikroTik RouterOS 5.0 and earlier allows remote attackers to hijack the authent
CVE-2012-6050
all versions
The winbox service in MikroTik RouterOS 5.15 and earlier allows remote attackers to cause a denial of service (CPU consumption), r
CVE-2008-6976
>= 2.0 and <= 2.9.51
MikroTik RouterOS 3.x through 3.13 and 2.x through 2.9.51 allows remote attackers to modify Network Management System (NMS) settin
CVE-2008-0680
<= 3.2
SNMPd in MikroTik RouterOS 3.2 and earlier allows remote attackers to cause a denial of service (daemon crash) via a crafted SNMP