Denial of Service Vulnerability in MikroTik Router by MikroTik
CVE-2020-20021

7.5HIGH

Key Information:

Vendor

Mikrotik

Status
Vendor
CVE Published:
12 July 2023

What is CVE-2020-20021?

A denial of service vulnerability exists in MikroTik Router versions v6.46.3 and earlier due to a misconfiguration in the SSH daemon. Attackers can exploit this flaw to disrupt the router's operations, potentially causing significant downtime and loss of accessibility for users reliant on the router for network connectivity. Administrators are advised to review their SSH configurations and apply necessary updates to mitigate the risk of exploitation.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.