DNS Cache Poisoning Vulnerability in MikroTik RouterOS
CVE-2019-3978
What is CVE-2019-3978?
MikroTik RouterOS versions up to and including 6.45.6 and 6.44.5 are susceptible to a vulnerability that allows remote unauthenticated attackers to send DNS queries through port 8291. This vulnerability enables attackers to control the DNS responses sent to the affected routers, which are subsequently cached. The exploited cache can result in misleading DNS information being returned, potentially allowing attackers to redirect users to malicious sites.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
MikroTik RouterOS RouterOS 6.45.6 Stable and below. RouterOS 6.44.5 Long-term and below.
References
EPSS Score
16% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
