Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-6444

Опубликовано: 12 мар. 2017
Источник: nvd
CVSS3: 7.5
CVSS2: 7.8
EPSS Средний

Описание

The MikroTik Router hAP Lite 6.25 has no protection mechanism for unsolicited TCP ACK packets in the case of a fast network connection, which allows remote attackers to cause a denial of service (CPU consumption) by sending many ACK packets. After the attacker stops the exploit, the CPU usage is 100% and the router requires a reboot for normal operation.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:mikrotik:routeros:6.25:*:*:*:*:*:*:*
cpe:2.3:h:mikrotik:router_hap_lite:-:*:*:*:*:*:*:*

EPSS

Процентиль: 95%
0.18055
Средний

7.5 High

CVSS3

7.8 High

CVSS2

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 7.5
github
больше 3 лет назад

The MikroTik Router hAP Lite 6.25 has no protection mechanism for unsolicited TCP ACK packets in the case of a fast network connection, which allows remote attackers to cause a denial of service (CPU consumption) by sending many ACK packets. After the attacker stops the exploit, the CPU usage is 100% and the router requires a reboot for normal operation.

EPSS

Процентиль: 95%
0.18055
Средний

7.5 High

CVSS3

7.8 High

CVSS2

Дефекты

CWE-400