CVE-2020-22844: Buffer Overflow
Published Feb 28, 2022
·Updated
A buffer overflow in Mikrotik RouterOS 6.47 allows unauthenticated attackers to cause a denial of service (DOS) via crafted SMB requests.
Affected Software
1 affected component
Mikrotik RouterOS=6.47
Event History
Feb 28, 2022
CVE Published
via MITRE·06:48 PM
Data Sourced
via MITRE·06:48 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-22844?
The severity of CVE-2020-22844 is high with a severity value of 7.5.
2
How can unauthenticated attackers exploit CVE-2020-22844?
Unauthenticated attackers can exploit CVE-2020-22844 by sending crafted SMB requests to the vulnerable Mikrotik RouterOS 6.47.
3
What is the impact of CVE-2020-22844?
The impact of CVE-2020-22844 is a denial of service (DOS) attack, which can cause the affected Mikrotik RouterOS to become unresponsive.
4
Is authentication required to exploit CVE-2020-22844?
No, authentication is not required to exploit CVE-2020-22844.
5
Where can I find more information about CVE-2020-22844?
More information about CVE-2020-22844 can be found at the following references: [link1](https://github.com/colorlight/mikrotik_poc/blob/master/two_vulns.md), [link2](https://mikrotik.com/support).