Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xj4h-hf2x-2q43

Опубликовано: 03 окт. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 9.3
CVSS3: 9.8

Описание

The web management service in affected RouterOS versions contains an integer underflow in its HTTP request body handling that is reachable before authentication. This can be leveraged by an unauthenticated network attacker to achieve arbitrary code execution as root, or to cause a denial of service, using a single crafted request.

The web management service in affected RouterOS versions contains an integer underflow in its HTTP request body handling that is reachable before authentication. This can be leveraged by an unauthenticated network attacker to achieve arbitrary code execution as root, or to cause a denial of service, using a single crafted request.

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-191

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-191