CVE-2019-3978
29.10.2019, 19:15
RouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below allow remote unauthenticated attackers to trigger DNS queries via port 8291. The queries are sent from the router to a server of the attacker's choice. The DNS responses are cached by the router, potentially resulting in cache poisoningEnginsight
Vendor | Product | Version |
---|---|---|
mikrotik | routeros | 𝑥 ≤ 6.44.5 |
mikrotik | routeros | 𝑥 ≤ 6.45.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References