PT-2019-3164 · Mikrotik · Routeros+1

Cq674350529

+1

·

Publicado

2019-07-20

·

Atualizado

2020-08-24

·

CVE-2019-13955

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Mikrotik RouterOS versions prior to 6.44.5
Description The issue is related to uncontrolled resource consumption, which can be exploited by sending a crafted HTTP request, allowing an authenticated remote attacker to crash the HTTP server via recursive parsing of JSON. This can lead to a denial of service.
Recommendations For versions prior to 6.44.5, update to version 6.44.5 or later to resolve the issue.

Correção

Resource Exhaustion

Uncontrolled Recursion

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2019-03153
CVE-2019-13955

Produtos afetados

Mikrotik Routeros
Routeros