<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – MikroTik RouterOS</title>
  <link>https://cvedaily.com/pages/tags/routeros.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/routeros.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – MikroTik RouterOS</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:51 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2024-27686 – Mikrotik RouterOS (x86) 6.40.5 through 6.49.10 (fixed in 7) allows a remote atta...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-27686</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-27686</guid>
    <pubDate>Fri, 08 May 2026 06:16:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-27686</strong></p>
  <p>Mikrotik RouterOS (x86) 6.40.5 through 6.49.10 (fixed in 7) allows a remote attacker to cause a denial of service (device crash) via crafted packet data to the SMB service on TCP port 445.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-27686">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-42611 – RouterOS provides various services that rely on correct
verification of client a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-42611</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-42611</guid>
    <pubDate>Tue, 05 May 2026 11:16:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-42611</strong></p>
  <p>RouterOS provides various services that rely on correct verification of client and server certificates to secure confidentiality and integrity of communications. This includes OpenVPN, CAPsMAN, Dot1x (802.1X), among others.    The vulnerability lies in shared certificate validation logic which uses the system certificate store that is shared and equally trusted by all system services. This causes…</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-295</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-42611">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7668 – A vulnerability was identified in MikroTik RouterOS 6.49.8. This vulnerability a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7668</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7668</guid>
    <pubDate>Sat, 02 May 2026 21:16:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7668</strong></p>
  <p>A vulnerability was identified in MikroTik RouterOS 6.49.8. This vulnerability affects the function ASN1_STRING_data in the library nova/lib/www/scep.p of the component SCEP Endpoint. The manipulation of the argument transactionID/messageType leads to out-of-bounds read. The attack may be initiated remotely. The exploit is publicly available and might be used. You should upgrade the affected comp…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7668">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-61481 – An issue in MikroTik RouterOS v.7.14.2 and SwOS v.2.18 exposes the WebFig manage...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-61481</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-61481</guid>
    <pubDate>Mon, 27 Oct 2025 14:15:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-61481</strong></p>
  <p>An issue in MikroTik RouterOS v.7.14.2 and SwOS v.2.18 exposes the WebFig management interface over cleartext HTTP by default, allowing an on-path attacker to execute injected JavaScript in the administrator’s browser and intercept credentials.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-61481">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-10948 – A vulnerability has been found in MikroTik RouterOS 7. This affects the function...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-10948</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-10948</guid>
    <pubDate>Thu, 25 Sep 2025 14:15:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-10948</strong></p>
  <p>A vulnerability has been found in MikroTik RouterOS 7. This affects the function parse_json_element of the file /rest/ip/address/print of the component libjson.so. The manipulation leads to buffer overflow. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 7.20.1 and 7.21beta2 mitigates this issue. You should upgr…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-10948">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-6563 – A cross-site scripting vulnerability is present in the hotspot of MikroTik's Rou...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-6563</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-6563</guid>
    <pubDate>Thu, 03 Jul 2025 12:15:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-6563</strong></p>
  <p>A cross-site scripting vulnerability is present in the hotspot of MikroTik's RouterOS on versions below 7.19.2. An attacker can inject the `javascript` protocol in the `dst` parameter. When the victim browses to the malicious URL and logs in, the XSS executes. The POST request used to login, can also be converted to a GET request, allowing an attacker to send a specifically crafted URL that autom…</p>
  <p><strong>CVSS:</strong> 4.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-6563">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-47310 – A misconfiguration in the default settings of MikroTik RouterOS 7 and fixed in v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-47310</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-47310</guid>
    <pubDate>Mon, 30 Jun 2025 15:15:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-47310</strong></p>
  <p>A misconfiguration in the default settings of MikroTik RouterOS 7 and fixed in v7.14 allows incoming IPv6 UDP traceroute packets.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-1174</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-47310">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-54772 – An issue was discovered in the Winbox service of MikroTik RouterOS long-term rel...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-54772</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-54772</guid>
    <pubDate>Tue, 11 Feb 2025 23:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-54772</strong></p>
  <p>An issue was discovered in the Winbox service of MikroTik RouterOS long-term release v6.43.13 through v6.49.13 and stable v6.43 through v7.17.2. A patch is available in the stable release v6.49.18. A discrepancy in response size between connection attempts made with a valid username and those with an invalid username allows attackers to enumerate for valid accounts.</p>
  <p><strong>CVSS:</strong> 5.4 · <strong>CWE:</strong> CWE-208</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-54772">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-45315 – Mikrotik RouterOs before stable v7.6 was discovered to contain an out-of-bounds ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-45315</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-45315</guid>
    <pubDate>Mon, 05 Dec 2022 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-45315</strong></p>
  <p>Mikrotik RouterOs before stable v7.6 was discovered to contain an out-of-bounds read in the snmp process. This vulnerability allows authenticated attackers to execute arbitrary code via a crafted packet.</p>
  <p><strong>CVSS:</strong> 6.4 · <strong>CWE:</strong> CWE-125</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-45315">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-6297 – The L2TP Client in MikroTik RouterOS versions 6.83.3 and 6.37.4 does not enable ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-6297</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-6297</guid>
    <pubDate>Mon, 27 Feb 2017 07:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-6297</strong></p>
  <p>The L2TP Client in MikroTik RouterOS versions 6.83.3 and 6.37.4 does not enable IPsec encryption after a reboot, which allows man-in-the-middle attackers to view transmitted data unencrypted and gain access to networks on the L2TP server by monitoring the packets for the transmitted data and obtaining the L2TP secret.</p>
  <p><strong>CVSS:</strong> 5.9 · <strong>CWE:</strong> CWE-311</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-6297">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2015-2350 – Cross-site request forgery (CSRF) vulnerability in MikroTik RouterOS 5.0 and ear...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-2350</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-2350</guid>
    <pubDate>Thu, 19 Mar 2015 14:59:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2015-2350</strong></p>
  <p>Cross-site request forgery (CSRF) vulnerability in MikroTik RouterOS 5.0 and earlier allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via a request in the status page to /cfg.</p>
  <p><strong>CVSS:</strong> 6.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-2350">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2012-6050 – The winbox service in MikroTik RouterOS 5.15 and earlier allows remote attackers...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-6050</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-6050</guid>
    <pubDate>Tue, 27 Nov 2012 04:49:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2012-6050</strong></p>
  <p>The winbox service in MikroTik RouterOS 5.15 and earlier allows remote attackers to cause a denial of service (CPU consumption), read the router version, and possibly have other impacts via a request to download the router's DLLs or plugins, as demonstrated by roteros.dll.</p>
  <p><strong>CVSS:</strong> 6.4 · <strong>CWE:</strong> CWE-16</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-6050">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2008-6976 – MikroTik RouterOS 3.x through 3.13 and 2.x through 2.9.51 allows remote attacker...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-6976</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-6976</guid>
    <pubDate>Wed, 19 Aug 2009 05:24:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2008-6976</strong></p>
  <p>MikroTik RouterOS 3.x through 3.13 and 2.x through 2.9.51 allows remote attackers to modify Network Management System (NMS) settings via a crafted SNMP set request.</p>
  <p><strong>CVSS:</strong> 6.4 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-6976">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2008-0680 – SNMPd in MikroTik RouterOS 3.2 and earlier allows remote attackers to cause a de...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-0680</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-0680</guid>
    <pubDate>Tue, 12 Feb 2008 01:00:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2008-0680</strong></p>
  <p>SNMPd in MikroTik RouterOS 3.2 and earlier allows remote attackers to cause a denial of service (daemon crash) via a crafted SNMP SET request.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-0680">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
