A crafted username at the RouterOS SSH prompt lets an unauthenticated attacker rewrite the router’s permission mask and take full control, with no credentials needed.
Posts tagged: MikroTik
MikroTik RouterOS Missing Authentication for Critical Function Vulnerability
MikroTik’s bandwidth-test service accepts a related connection before login finishes, letting an unauthenticated network client leak kernel memory or crash the router’s kernel.