Medium SEVERITY — Vulnerability

CVE-2023-41570 — MikroTik RouterOS v7.1 to 7.11 was discovered to contain incorrect access control mechanisms in place for the Rest API.

MikroTik RouterOS v7.1 to 7.11 was discovered to contain incorrect access control mechanisms in place for the Rest API.

Platform
MikroTik RouterOS
CVE Record
CVE-2023-41570
CVSS Score
5.3/10
Published
14 November 2023
Views
38
Primary source: Review the official advisory at nvd.nist.gov Go to Source

Summary

MikroTik RouterOS v7.1 to 7.11 was discovered to contain incorrect access control mechanisms in place for the Rest API.

Assessment

  • CVE: CVE-2023-41570
  • CVSS taban puanı: 5.3
  • Vektör: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
  • Kaynak: NVD kaydı

References

Action

  • Etkilenen sistemleri envanterden doğrulayın
  • Üretici yamasını bakım penceresinde uygulayın
  • Yama uygulanana kadar erişimi ağ katmanında kısıtlayın
routeros *

MikroTik RouterOS — Related Advisories

VIEW ALL →