CVE-2019-3977: High severity mikrotik routeros vulnerability
RouterOS 6.45.6 Stable, RouterOS 6.44.5 Long-term, and below insufficiently validate where upgrade packages are download from when using the autoupgrade feature. Therefore, a remote attacker can trick the router into "upgrading" to an older version of RouterOS and possibly reseting all the system's usernames and passwords.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-3977?
CVE-2019-3977 has been classified as a high severity vulnerability due to the potential for remote exploitation.
How do I fix CVE-2019-3977?
To mitigate CVE-2019-3977, update your RouterOS to a version later than 6.45.6 or 6.44.5 Long-term.
What types of devices are affected by CVE-2019-3977?
CVE-2019-3977 affects MikroTik devices running RouterOS versions up to and including 6.45.6 and 6.44.5 Long-term.
Can CVE-2019-3977 allow for unauthorized access?
Yes, CVE-2019-3977 can allow an attacker to trick a router into downgrading and potentially reset system settings.
Is there any known exploit for CVE-2019-3977 in the wild?
Yes, there have been reports indicating that CVE-2019-3977 could be targeted by attackers exploiting RouterOS's autoupgrade feature.