PT-2020-6923 · Mikrotik · Mikrotik Routeros

Published

2020-03-18

·

Updated

2023-07-20

·

CVE-2020-20021

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions MikroTik Router versions 6.46.3 and earlier
Description The issue allows an attacker to cause a denial of service via misconfiguration in the SSH daemon, potentially leading to uncontrolled resource consumption. This can be exploited by a remote attacker to disrupt service.
Recommendations For versions 6.46.3 and earlier, consider disabling the SSH daemon as a temporary workaround until a patch is available. Restrict access to the SSH daemon to minimize the risk of exploitation.

Exploit

Fix

DoS

Resource Exhaustion

Weakness Enumeration

Related Identifiers

BDU:2023-07215
CVE-2020-20021

Affected Products

Mikrotik Routeros