A vulnerability in the FTP daemon on MikroTik routers through 6.44.3 could allow remote attackers to exhaust all available memory, causing the device to reboot because of uncontrolled resource management.
References
Link | Resource |
---|---|
https://mikrotik.com/download/changelogs/stable-release-tree | Release Notes Vendor Advisory |
https://forum.mikrotik.com/viewtopic.php?t=150045 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2019-07-03 14:15
Updated : 2020-08-24 10:37
NVD link : CVE-2019-13074
Mitre link : CVE-2019-13074
JSON object : View
CWE
CWE-770
Allocation of Resources Without Limits or Throttling
Products Affected
mikrotik
- rb3011uias-rm
- ccr1072-1g-8s\+
- rb4011igs\+rm
- hex_poe
- rb2011uias-in
- ccr1036-8g-2s\+
- rb2011il-in
- ccr1016-12g
- ccr1036-12g-4s
- hex
- hex_s
- ccr1036-12g-4s-em
- rb1100ahx4
- ccr1036-8g-2s\+em
- hex_poe_lite
- rb2011il-rm
- powerbox_pro
- routeros
- rb2011ils-in
- ccr1009-7g-1c-1s\+
- ccr1009-7g-1c-1s\+pc
- hex_lite
- ccr1016-12s-1s\+
- ccr1009-7g-1c-pc
- powerbox
- rb2011uias-rm