Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2018-14847

MikroTik | RouterOSAdded 2021-12-01Remediation Deadline 2022-06-01

MikroTik Router OS Directory Traversal Vulnerability

MikroTik RouterOS through 6.42 allows unauthenticated remote attackers to read arbitrary files and remote authenticated attackers to write arbitrary files due to a directory traversal vulnerability in the WinBox interface.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-22

References