First published: Tue Nov 14 2023(Updated: )
MikroTik RouterOS v7.1 to 7.11 was discovered to contain incorrect access control mechanisms in place for the Rest API.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MikroTik RouterOS | >=7.1<7.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-41570 is a vulnerability found in MikroTik RouterOS versions 7.1 to 7.11 that involves incorrect access control mechanisms in the Rest API.
CVE-2023-41570 has a severity rating of 5.3, which is considered medium.
Versions 7.1 to 7.11 of MikroTik RouterOS are affected by CVE-2023-41570.
To fix CVE-2023-41570, it is recommended to update your MikroTik RouterOS to version 7.12 or higher.
You can find more information about CVE-2023-41570 at the following link: [https://www.enricobassetti.it/2023/11/cve-2023-41570-access-control-vulnerability-in-mikrotik-rest-api/](https://www.enricobassetti.it/2023/11/cve-2023-41570-access-control-vulnerability-in-mikrotik-rest-api/)