CVE Database
/

CVE-2019-3924

Back to search

CVE-2019-3924

Published: Feb 20, 2019

Modified: Sep 17, 2024

PUBLISHED

Description

MikroTik RouterOS before 6.43.12 (stable) and 6.42.12 (long-term) is vulnerable to an intermediary vulnerability. The software will execute user defined network requests to both WAN and LAN clients. A remote unauthenticated attacker can use this vulnerability to bypass the router's firewall or for general network scanning activities.

VendorProductVersions

Tenable

MikroTik RouterOS

affected
RouterOS long-term 6.42.11 and below, RouterOS stable 6.43.11 and below

Weaknesses (CWE)

References

46444
exploit
x_refsource_EXPLOIT-DB
107177
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now