![]() The resolver can be reached via Winbox by sending messages to the system resolver. A possible attack vector is via Winbox on port 8291 if this port is open to untrusted networks. ![]() They writes that the router is affected even if DNS is not enabled. MikroTik has published a blog post about the DNS poisioning vulnerability that exists up to RouterOS 6.45.6. Tenable security researchers suggest disabling Winbox and using SSH. ![]() Tenable has published the details of the vulnerabilities in this blog post.īy simply deactivating Winbox, all these attacks are mitigated and probably cannot be executed anymore. You can downgrade the router's OS or reset system passwords. ![]() Please secure your router after downgrading.)īy combining these four vulnerabilities, attackers gain root access to the system.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |