CVE-2019-3979 describes a DNS cache poisoning vulnerability affecting MikroTik RouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below. A remote attacker can exploit this by controlling a DNS server to inject malicious, unrelated A records into the router's DNS cache during legitimate queries. This high-severity vulnerability (CVSS 7.5) requires no user interaction and has a high impact on integrity, allowing for DNS manipulation. While not currently listed on CISA's KEV catalog and lacking public exploit code, it has garnered some community discussion and media coverage, indicating awareness of its potential.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 6.44.5CPE matchmatch criteria | cpe:2.3:o:mikrotik:routeros:*:*:*:*:ltr:*:*:* | ||
<= 6.45.6CPE matchmatch criteria | cpe:2.3:o:mikrotik:routeros:*:*:*:*:-:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
MikroTik RouterOS Multiple Vulnerabilities
Oct 28, 2019MikroTik RouterOS Multiple Vulnerabilities
Oct 28, 2019MikroTik RouterOS Multiple Vulnerabilities
Oct 28, 2019MikroTik RouterOS Multiple Vulnerabilities
Oct 28, 2019MikroTik RouterOS Multiple Vulnerabilities
Oct 28, 2019MikroTik RouterOS Multiple Vulnerabilities
Oct 28, 2019