cbcvebase.

Mikrotik Routeros vulnerabilities

99 known vulnerabilities affecting mikrotik/routeros.

Total CVEs
99
CISA KEV
5
actively exploited
Public exploits
16
Exploited in wild
10
Severity breakdown
CRITICAL8HIGH35MEDIUM55LOW1

Vulnerabilities

Page 3 of 5
CVE-2020-10364P3HIGHCVSS 7.5≤ 6.44.32020-03-23
CVE-2020-10364 [HIGH] CWE-770 CVE-2020-10364: The SSH daemon on MikroTik routers through v6.44.3 could allow remote attackers to generate CPU acti The SSH daemon on MikroTik routers through v6.44.3 could allow remote attackers to generate CPU activity, trigger refusal of new authorized connections, and cause a reboot via connect and write system calls, because of uncontrolled resource management.
nvd
CVE-2019-15055P3MEDIUMCVSS 6.5≤ 6.44.5≥ 6.45, ≤ 6.45.32019-08-26
CVE-2019-15055 [MEDIUM] CWE-22 CVE-2019-15055: MikroTik RouterOS through 6.44.5 and 6.45.x through 6.45.3 improperly handles the disk name, which a MikroTik RouterOS through 6.44.5 and 6.45.x through 6.45.3 improperly handles the disk name, which allows authenticated users to delete arbitrary files. Attackers can exploit this vulnerability to reset credential storage, which allows them access to the management interface as an administrator without authentication.
nvd
CVE-2020-22845P3HIGHCVSS 7.5v6.472022-02-28
CVE-2020-22845 [HIGH] CWE-120 CVE-2020-22845: A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of se A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted FTP requests.
nvd
CVE-2020-22844P3HIGHCVSS 7.5v6.472022-02-28
CVE-2020-22844 [HIGH] CWE-401 CVE-2020-22844: A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of se A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted SMB requests.
nvd
CVE-2024-54952P3HIGHCVSS 7.5v6.40.52025-05-29
CVE-2024-54952 [HIGH] CWE-476 CVE-2024-54952: MikroTik RouterOS 6.40.5, the SMB service contains a memory corruption vulnerability. Remote, unauth MikroTik RouterOS 6.40.5, the SMB service contains a memory corruption vulnerability. Remote, unauthenticated attackers can exploit this issue by sending specially crafted packets, triggering a null pointer dereference. This leads to a Remote Denial of Service (DoS), rendering the SMB service unavailable.
nvd
CVE-2019-3979P3HIGHCVSS 7.5≤ 6.44.5≤ 6.45.62019-10-29
CVE-2019-3979 [HIGH] CWE-345 CVE-2019-3979: RouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below are vulnerable to a DNS unrelated data RouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below are vulnerable to a DNS unrelated data attack. The router adds all A records to its DNS cache even when the records are unrelated to the domain that was queried. Therefore, a remote attacker controlled DNS server can poison the router's DNS cache via malicious responses with additional and untr
nvd
CVE-2026-56719P3MEDIUMCVSS 6.5≤ 6.49.18≥ 7.0.0, ≤ 7.11.22026-09-16
CVE-2026-56719 [MEDIUM] CWE-125 CVE-2026-56719: MikroTik RouterOS before 7.24 contains an out-of-bounds read vulnerability in the userspace SMB daem MikroTik RouterOS before 7.24 contains an out-of-bounds read vulnerability in the userspace SMB daemon that allows unauthenticated attackers to read beyond the end of the request buffer by supplying a crafted uniPwdLen field value in a minimal SMB1 SessionSetupAndX frame. The out-of-bounds read occurs in the SessionSetupAndX handler before any crede
nvd
CVE-2019-13955P3MEDIUMCVSS 6.5fixed in 6.44.5v6.452019-07-26
CVE-2019-13955 [MEDIUM] CWE-674 CVE-2019-13955: Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to stack exhaustion. By sendi Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to stack exhaustion. By sending a crafted HTTP request, an authenticated remote attacker can crash the HTTP server via recursive parsing of JSON. Malicious code cannot be injected.
nvd
CVE-2025-42611P3MEDIUMCVSS 6.5≤ 7.20.x2026-05-05
CVE-2025-42611 [MEDIUM] CWE-295 CVE-2025-42611: RouterOS provides various services that rely on correct verification of client and server certificat RouterOS provides various services that rely on correct verification of client and server certificates to secure confidentiality and integrity of communications. This includes OpenVPN, CAPsMAN, Dot1x (802.1X), among others. The vulnerability lies in shared certificate validation logic which uses the system certificate store that is shared and equa
nvd
CVE-2018-1157P3MEDIUMCVSS 6.5fixed in 6.40.9fixed in 6.42.72018-08-23
CVE-2018-1157 [MEDIUM] CWE-400 CVE-2018-1157: Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory exhaustion vulnerability. An au Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory exhaustion vulnerability. An authenticated remote attacker can crash the HTTP server and in some circumstances reboot the system via a crafted HTTP POST request.
nvd
CVE-2019-13954P3MEDIUMCVSS 6.5fixed in 6.44.5v6.452019-07-26
CVE-2019-13954 [MEDIUM] CWE-770 CVE-2019-13954: Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to memory exhaustion. By send Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to memory exhaustion. By sending a crafted HTTP request, an authenticated remote attacker can crash the HTTP server and in some circumstances reboot the system. Malicious code cannot be injected.
nvd
CVE-2026-89021P3MEDIUMCVSS 6.9fixed in 7.24.22026-09-14
CVE-2026-89021 [MEDIUM] CWE-22 CVE-2026-89021: MikroTik RouterOS before 7.24.2 contains a path traversal vulnerability in the container package OCI MikroTik RouterOS before 7.24.2 contains a path traversal vulnerability in the container package OCI/tar image extraction that allows attackers to write files outside the container root by supplying a crafted container image with symlinks pointing to arbitrary paths. Attackers can exploit unsanitized tar member path extraction during container import
nvd
CVE-2020-20021P4HIGHCVSS 7.5≤ 6.46.32023-07-12
CVE-2020-20021 [HIGH] CWE-400 CVE-2020-20021: An issue discovered in MikroTik Router v6.46.3 and earlier allows attacker to cause denial of servic An issue discovered in MikroTik Router v6.46.3 and earlier allows attacker to cause denial of service via misconfiguration in the SSH daemon.
nvd
CVE-2020-20236P4MEDIUMCVSS 6.5v6.46.32021-05-18
CVE-2020-20236 [MEDIUM] CWE-787 CVE-2020-20236: Mikrotik RouterOs 6.46.3 (stable tree) suffers from a memory corruption vulnerability in the /nova/b Mikrotik RouterOs 6.46.3 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/sniffer process. An authenticated remote attacker can cause a Denial of Service due to improper memory access.
nvd
CVE-2020-20214P4MEDIUMCVSS 6.5v6.44.62021-05-18
CVE-2020-20214 [MEDIUM] CWE-617 CVE-2020-20214: Mikrotik RouterOs 6.44.6 (long-term tree) suffers from an assertion failure vulnerability in the bte Mikrotik RouterOs 6.44.6 (long-term tree) suffers from an assertion failure vulnerability in the btest process. An authenticated remote attacker can cause a Denial of Service due to an assertion failure via a crafted packet.
nvd
CVE-2018-1158P4MEDIUMCVSS 6.5fixed in 6.40.9fixed in 6.42.72018-08-23
CVE-2018-1158 [MEDIUM] CWE-674 CVE-2018-1158: Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a stack exhaustion vulnerability. An aut Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a stack exhaustion vulnerability. An authenticated remote attacker can crash the HTTP server via recursive parsing of JSON.
nvd
CVE-2018-1159P4MEDIUMCVSS 6.5fixed in 6.40.9fixed in 6.42.72018-08-23
CVE-2018-1159 [MEDIUM] CWE-119 CVE-2018-1159: Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory corruption vulnerability. An au Mikrotik RouterOS before 6.42.7 and 6.40.9 is vulnerable to a memory corruption vulnerability. An authenticated remote attacker can crash the HTTP server by rapidly authenticating and disconnecting.
nvd
CVE-2020-20213P4MEDIUMCVSS 6.5v6.44.52021-07-07
CVE-2020-20213 [MEDIUM] CWE-674 CVE-2020-20213: Mikrotik RouterOs 6.44.5 (long-term tree) suffers from an stack exhaustion vulnerability in the /nov Mikrotik RouterOs 6.44.5 (long-term tree) suffers from an stack exhaustion vulnerability in the /nova/bin/net process. An authenticated remote attacker can cause a Denial of Service due to overloading the systems CPU.
nvd
CVE-2020-20250P4MEDIUMCVSS 6.5fixed in 6.472021-07-13
CVE-2020-20250 [MEDIUM] CWE-476 CVE-2020-20250: Mikrotik RouterOs before stable version 6.47 suffers from a memory corruption vulnerability in the / Mikrotik RouterOs before stable version 6.47 suffers from a memory corruption vulnerability in the /nova/bin/lcdstat process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference). NOTE: this is different from CVE-2020-20253 and CVE-2020-20254. All four vulnerabilities in the /nova/bin/lcdstat process are discusse
nvd
CVE-2023-24094P4HIGHCVSS 7.5v6.40.52023-03-27
CVE-2023-24094 [HIGH] CWE-787 CVE-2023-24094: An issue in the bridge2 component of MikroTik RouterOS v6.40.5 allows attackers to cause a Denial of An issue in the bridge2 component of MikroTik RouterOS v6.40.5 allows attackers to cause a Denial of Service (DoS) via crafted packets.
nvd
Mikrotik Routeros vulnerabilities | cvebase