ID:1418 - Exploit for Resource exhaustion in MikroTik RouterOS - CVE-2017-7285

 
Main Vulnerability Database Exploits ID:1418 - Exploit for Resource exhaustion in MikroTik RouterOS - CVE-2017-7285

ID:1418 - Exploit for Resource exhaustion in MikroTik RouterOS - CVE-2017-7285

Published: March 18, 2020


Vulnerability identifier: #VU13336
Vulnerability risk: Low
CVE-ID: CVE-2017-7285
CWE-ID: CWE-400
Exploitation vector: Remote access
Vulnerable software:
MikroTik RouterOS

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to cause DoS condition on the target system.

The vulnerability exists in the network stack due to an error when processing malicious input. A remote attacker can submit a flood of TCP RST packets, exhaust all available CPU and prevent the affected router from accepting new TCP connections.


Remediation

Install update from vendor's website.