Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c628-mp65-3f6f

Опубликовано: 19 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

MikroTik RouterOS stable before 6.49.7 and long-term through 6.48.6 are vulnerable to a privilege escalation issue. A remote and authenticated attacker can escalate privileges from admin to super-admin on the Winbox or HTTP interface. The attacker can abuse this vulnerability to execute arbitrary code on the system.

MikroTik RouterOS stable before 6.49.7 and long-term through 6.48.6 are vulnerable to a privilege escalation issue. A remote and authenticated attacker can escalate privileges from admin to super-admin on the Winbox or HTTP interface. The attacker can abuse this vulnerability to execute arbitrary code on the system.

EPSS

Процентиль: 52%
0.00293
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 9.1
nvd
больше 2 лет назад

MikroTik RouterOS stable before 6.49.7 and long-term through 6.48.6 are vulnerable to a privilege escalation issue. A remote and authenticated attacker can escalate privileges from admin to super-admin on the Winbox or HTTP interface. The attacker can abuse this vulnerability to execute arbitrary code on the system.

CVSS3: 9.1
fstec
больше 2 лет назад

Уязвимость интерфейсов Winbox и HTTP операционной системы RouterOS маршрутизаторов MikroTik, позволяющая нарушителю повысить свои привилегии до уровня Super Admin

EPSS

Процентиль: 52%
0.00293
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-269