First published: Wed Apr 10 2019(Updated: )
MikroTik RouterOS versions Stable 6.43.12 and below, Long-term 6.42.12 and below, and Testing 6.44beta75 and below are vulnerable to an authenticated, remote directory traversal via the HTTP or Winbox interfaces. An authenticated, remote attack can use this vulnerability to read and write files outside of the sandbox directory (/rw/disk).
Credit: vulnreport@tenable.com vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
MikroTik RouterOS | <=6.42.12 | |
MikroTik RouterOS | <=6.43.12 | |
MikroTik RouterOS | =6.41-rc31 | |
MikroTik RouterOS | =6.41-rc32 | |
MikroTik RouterOS | =6.41-rc34 | |
MikroTik RouterOS | =6.41-rc37 | |
MikroTik RouterOS | =6.41-rc38 | |
MikroTik RouterOS | =6.41-rc44 | |
MikroTik RouterOS | =6.41-rc47 | |
MikroTik RouterOS | =6.41-rc50 | |
MikroTik RouterOS | =6.41-rc52 | |
MikroTik RouterOS | =6.41-rc56 | |
MikroTik RouterOS | =6.41-rc61 | |
MikroTik RouterOS | =6.41-rc66 | |
MikroTik RouterOS | =6.42-rc11 | |
MikroTik RouterOS | =6.42-rc12 | |
MikroTik RouterOS | =6.42-rc14 | |
MikroTik RouterOS | =6.42-rc15 | |
MikroTik RouterOS | =6.42-rc18 | |
MikroTik RouterOS | =6.42-rc2 | |
MikroTik RouterOS | =6.42-rc20 | |
MikroTik RouterOS | =6.42-rc23 | |
MikroTik RouterOS | =6.42-rc24 | |
MikroTik RouterOS | =6.42-rc27 | |
MikroTik RouterOS | =6.42-rc28 | |
MikroTik RouterOS | =6.42-rc30 | |
MikroTik RouterOS | =6.42-rc35 | |
MikroTik RouterOS | =6.42-rc37 | |
MikroTik RouterOS | =6.42-rc39 | |
MikroTik RouterOS | =6.42-rc41 | |
MikroTik RouterOS | =6.42-rc43 | |
MikroTik RouterOS | =6.42-rc46 | |
MikroTik RouterOS | =6.42-rc48 | |
MikroTik RouterOS | =6.42-rc49 | |
MikroTik RouterOS | =6.42-rc5 | |
MikroTik RouterOS | =6.42-rc52 | |
MikroTik RouterOS | =6.42-rc56 | |
MikroTik RouterOS | =6.42-rc6 | |
MikroTik RouterOS | =6.42-rc9 | |
MikroTik RouterOS | =6.43-rc11 | |
MikroTik RouterOS | =6.43-rc12 | |
MikroTik RouterOS | =6.43-rc14 | |
MikroTik RouterOS | =6.43-rc17 | |
MikroTik RouterOS | =6.43-rc19 | |
MikroTik RouterOS | =6.43-rc21 | |
MikroTik RouterOS | =6.43-rc23 | |
MikroTik RouterOS | =6.43-rc27 | |
MikroTik RouterOS | =6.43-rc29 | |
MikroTik RouterOS | =6.43-rc3 | |
MikroTik RouterOS | =6.43-rc32 | |
MikroTik RouterOS | =6.43-rc34 | |
MikroTik RouterOS | =6.43-rc4 | |
MikroTik RouterOS | =6.43-rc40 | |
MikroTik RouterOS | =6.43-rc42 | |
MikroTik RouterOS | =6.43-rc44 | |
MikroTik RouterOS | =6.43-rc45 | |
MikroTik RouterOS | =6.43-rc5 | |
MikroTik RouterOS | =6.43-rc51 | |
MikroTik RouterOS | =6.43-rc56 | |
MikroTik RouterOS | =6.43-rc6 | |
MikroTik RouterOS | =6.43-rc64 | |
MikroTik RouterOS | =6.43-rc66 | |
MikroTik RouterOS | =6.43-rc7 | |
MikroTik RouterOS | =6.44-beta14 | |
MikroTik RouterOS | =6.44-beta17 | |
MikroTik RouterOS | =6.44-beta20 | |
MikroTik RouterOS | =6.44-beta28 | |
MikroTik RouterOS | =6.44-beta39 | |
MikroTik RouterOS | =6.44-beta40 | |
MikroTik RouterOS | =6.44-beta50 | |
MikroTik RouterOS | =6.44-beta54 | |
MikroTik RouterOS | =6.44-beta6 | |
MikroTik RouterOS | =6.44-beta61 | |
MikroTik RouterOS | =6.44-beta75 | |
MikroTik RouterOS | =6.44-beta9 | |
<=6.42.12 | ||
<=6.43.12 | ||
=6.41-rc31 | ||
=6.41-rc32 | ||
=6.41-rc34 | ||
=6.41-rc37 | ||
=6.41-rc38 | ||
=6.41-rc44 | ||
=6.41-rc47 | ||
=6.41-rc50 | ||
=6.41-rc52 | ||
=6.41-rc56 | ||
=6.41-rc61 | ||
=6.41-rc66 | ||
=6.42-rc11 | ||
=6.42-rc12 | ||
=6.42-rc14 | ||
=6.42-rc15 | ||
=6.42-rc18 | ||
=6.42-rc2 | ||
=6.42-rc20 | ||
=6.42-rc23 | ||
=6.42-rc24 | ||
=6.42-rc27 | ||
=6.42-rc28 | ||
=6.42-rc30 | ||
=6.42-rc35 | ||
=6.42-rc37 | ||
=6.42-rc39 | ||
=6.42-rc41 | ||
=6.42-rc43 | ||
=6.42-rc46 | ||
=6.42-rc48 | ||
=6.42-rc49 | ||
=6.42-rc5 | ||
=6.42-rc52 | ||
=6.42-rc56 | ||
=6.42-rc6 | ||
=6.42-rc9 | ||
=6.43-rc11 | ||
=6.43-rc12 | ||
=6.43-rc14 | ||
=6.43-rc17 | ||
=6.43-rc19 | ||
=6.43-rc21 | ||
=6.43-rc23 | ||
=6.43-rc27 | ||
=6.43-rc29 | ||
=6.43-rc3 | ||
=6.43-rc32 | ||
=6.43-rc34 | ||
=6.43-rc4 | ||
=6.43-rc40 | ||
=6.43-rc42 | ||
=6.43-rc44 | ||
=6.43-rc45 | ||
=6.43-rc5 | ||
=6.43-rc51 | ||
=6.43-rc56 | ||
=6.43-rc6 | ||
=6.43-rc64 | ||
=6.43-rc66 | ||
=6.43-rc7 | ||
=6.44-beta14 | ||
=6.44-beta17 | ||
=6.44-beta20 | ||
=6.44-beta28 | ||
=6.44-beta39 | ||
=6.44-beta40 | ||
=6.44-beta50 | ||
=6.44-beta54 | ||
=6.44-beta6 | ||
=6.44-beta61 | ||
=6.44-beta75 | ||
=6.44-beta9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.