CVE-2020-20215: Medium severity mikrotik routeros vulnerability
Published Jul 7, 2021
·Updated
Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/diskd process. An authenticated remote attacker can cause a Denial of Service due to invalid memory access.
Affected Software
1 affected component
Mikrotik RouterOS=6.44.6
Event History
Jul 7, 2021
CVE Published
via MITRE·01:29 PM
Data Sourced
via MITRE·01:29 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2020-20215.
2
What is the severity rating of CVE-2020-20215?
The severity rating of CVE-2020-20215 is medium with a score of 6.5.
3
How does CVE-2020-20215 affect MikroTik RouterOS?
CVE-2020-20215 affects MikroTik RouterOS version 6.44.6 (long-term tree).
4
What is the impact of CVE-2020-20215?
CVE-2020-20215 can cause a Denial of Service (DoS) due to invalid memory access.
5
Is authentication required for an attacker to exploit CVE-2020-20215?
Yes, authentication is required for an attacker to exploit CVE-2020-20215.