Improper Verification of Cryptographic Signature in MikroTik RouterOS - CVE-2026-67276
Published: September 6, 2026
Vulnerability details
The vulnerability allows a remote attacker to open an SSH command channel as an authorized user.
The vulnerability exists due to improper verification of cryptographic signatures in the RouterOS SSH authorized-key matching logic when processing SSH authentication requests. A remote attacker can supply an RSA public key using an authorized modulus and an exponent of one to open an SSH command channel as an authorized user.
Note, the vulnerability is being actively exploited in the wild.