CVE-2019-13955
26.07.2019, 13:15
Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to stack exhaustion. By sending a crafted HTTP request, an authenticated remote attacker can crash the HTTP server via recursive parsing of JSON. Malicious code cannot be injected.Enginsight
Vendor | Product | Version |
---|---|---|
mikrotik | routeros | 𝑥 < 6.44.5 |
mikrotik | routeros | 6.45 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration