CVE-2022-45315: Critical severity Mikrotik RouterOS vulnerability
Mikrotik RouterOs before stable v7.6 was discovered to contain an out-of-bounds read in the snmp process. This vulnerability allows attackers to execute arbitrary code via a crafted packet.
Other sources
Mikrotik RouterOs before stable v7.6 was discovered to contain an out-of-bounds read in the snmp process. This vulnerability allows authenticated attackers to execute arbitrary code via a crafted packet.
— NVD
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this MikroTik RouterOS vulnerability?
The vulnerability ID for this MikroTik RouterOS vulnerability is CVE-2022-45315.
What is the severity of CVE-2022-45315?
CVE-2022-45315 has a severity of 9.8, which is classified as critical.
How does CVE-2022-45315 affect MikroTik RouterOS?
CVE-2022-45315 allows attackers to execute arbitrary code via a crafted SNMP packet.
What version of MikroTik RouterOS is affected by CVE-2022-45315?
MikroTik RouterOS versions up to and excluding 7.6 are affected by CVE-2022-45315.
Is there a fix available for CVE-2022-45315?
Yes, a fix is available for CVE-2022-45315 in MikroTik RouterOS stable version 7.6.