CVE-2020-11881

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
14/09/2020
Last modified:
18/09/2020

Description

An array index error in MikroTik RouterOS 6.41.3 through 6.46.5, and 7.x through 7.0 Beta5, allows an unauthenticated remote attacker to crash the SMB server via modified setup-request packets, aka SUP-12964.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:mikrotik:routeros:*:*:*:*:*:*:*:* 6.41.3 (including) 6.46.5 (including)
cpe:2.3:o:mikrotik:routeros:7.0:beta3:*:*:*:*:*:*
cpe:2.3:o:mikrotik:routeros:7.0:beta4:*:*:*:*:*:*
cpe:2.3:o:mikrotik:routeros:7.0:beta5:*:*:*:*:*:*


References to Advisories, Solutions, and Tools