MikroTik RouterOS CVE-2019-3924 Security Bypass Vulnerability
BID:107177
CVE-2019-3924 |Info
MikroTik RouterOS CVE-2019-3924 Security Bypass Vulnerability
| Bugtraq ID: | 107177 |
| Class: | Access Validation Error |
| CVE: |
CVE-2019-3924 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 22 2019 12:00AM |
| Updated: | Feb 22 2019 12:00AM |
| Credit: | Tenable |
| Vulnerable: |
MikroTik Routeros 6.41.3 MikroTik RouterOS 2.9.51 MikroTik RouterOS 2.9.50 MikroTik RouterOS 2.9.49 MikroTik RouterOS 2.9.48 MikroTik RouterOS 2.9.47 MikroTik RouterOS 2.9.46 MikroTik RouterOS 2.9.45 MikroTik RouterOS 2.9.44 MikroTik RouterOS 2.9.43 MikroTik RouterOS 2.9.42 MikroTik RouterOS 2.9.41 MikroTik RouterOS 2.9.40 MikroTik Routeros 6.42 MikroTik RouterOS 6.3 MikroTik RouterOS 6.2 MikroTik RouterOS 5.26 MikroTik RouterOS 5.25 MikroTik RouterOS 5.15 MikroTik RouterOS 5.0 MikroTik RouterOS 4.0 MikroTik RouterOS 3.2 MikroTik RouterOS 3.13 MikroTik RouterOS 3.12 MikroTik RouterOS 3.11 MikroTik RouterOS 3.10 MikroTik RouterOS 3.09 MikroTik RouterOS 3.08 MikroTik RouterOS 3.07 MikroTik RouterOS 3.0 |
| Not Vulnerable: |
MikroTik Routeros 6.43.12 MikroTik Routeros 6.42.12 MikroTik Routeros 6.44beta75 |
Exploit / POC
MikroTik RouterOS CVE-2019-3924 Security Bypass Vulnerability
The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.
The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.
Solution / Fix
MikroTik RouterOS CVE-2019-3924 Security Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.