First published: Mon Feb 28 2022(Updated: )
A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted SMB requests.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MikroTik RouterOS | =6.47 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-22844 is high with a severity value of 7.5.
Unauthenticated attackers can exploit CVE-2020-22844 by sending crafted SMB requests to the vulnerable Mikrotik RouterOS 6.47.
The impact of CVE-2020-22844 is a denial of service (DOS) attack, which can cause the affected Mikrotik RouterOS to become unresponsive.
No, authentication is not required to exploit CVE-2020-22844.
More information about CVE-2020-22844 can be found at the following references: [link1](https://github.com/colorlight/mikrotik_poc/blob/master/two_vulns.md), [link2](https://mikrotik.com/support).