First published: Mon Jul 19 2021(Updated: )
Mikrotik RouterOs before stable 6.47 suffers from an uncontrolled resource consumption in the memtest process. An authenticated remote attacker can cause a Denial of Service due to overloading the systems CPU.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MikroTik RouterOS | =6.47 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-20248 is a vulnerability in Mikrotik RouterOs before stable 6.47 that allows an authenticated remote attacker to cause a Denial of Service by overloading the system's CPU.
CVE-2020-20248 has a severity score of 6.5, which is considered medium.
Mikrotik RouterOs version 6.47 and earlier are affected by CVE-2020-20248.
An attacker needs to be authenticated to exploit CVE-2020-20248 and can cause a Denial of Service by overloading the system's CPU.
Yes, fixing CVE-2020-20248 requires updating Mikrotik RouterOs to a stable version 6.47 or later.