First published: Tue Nov 27 2012(Updated: )
The winbox service in MikroTik RouterOS 5.15 and earlier allows remote attackers to cause a denial of service (CPU consumption), read the router version, and possibly have other impacts via a request to download the router's DLLs or plugins, as demonstrated by roteros.dll.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MikroTik devices | =5.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-6050 is classified as a denial of service vulnerability that can significantly affect system availability.
The recommended fix for CVE-2012-6050 is to upgrade MikroTik RouterOS to a version later than 5.15.
CVE-2012-6050 affects MikroTik RouterOS version 5.15 and earlier.
CVE-2012-6050 allows remote attackers to execute denial of service attacks that lead to high CPU consumption.
By exploiting CVE-2012-6050, attackers can cause denial of service, read the router version, and potentially access other sensitive information.