CVE-2019-3924(mikrotik / routeros)

LOWCVSS 7.5 ยท HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

MikroTik RouterOS before 6.43.12 (stable) and 6.42.12 (long-term) is vulnerable to an intermediary vulnerability. The software will execute user defined network requests to both WAN and LAN clients. A remote unauthenticated attacker can use this vulnerability to bypass the router's firewall or for general network scanning activities.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-441

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • routeros

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • 1 total mentions across 1 day

Affected systems

Vendors
Products
routeros

Deep dive

Activity timeline1 mentions / 1d
00111Mentions ยท 2026-09-28: 109-28
Full discourse1 post
  • General Intels Daily@intels_daily

    ๐Ÿ”ด ๐—–๐—ฅ๐—œ๐—ง๐—œ๐—–๐—”๐—Ÿ ยท ๐—”๐—ฐ๐—ฐ๐—ฒ๐˜€๐˜€ ๐˜€๐—ฎ๐—น๐—ฒ ๐Ÿข Target: ๐—œ๐—ฟ๐—ฎ๐—พ๐—ถ ๐— ๐—ถ๐—ป๐—ถ๐˜€๐˜๐—ฟ๐˜† ๐—ผ๐—ณ ๐—™๐—ถ๐—ป๐—ฎ๐—ป๐—ฐ๐—ฒ, ๐—ฅ๐—ฎ๐˜€๐—ต๐—ฒ๐—ฒ๐—ฑ ๐—•๐—ฎ๐—ป๐—ธ, ๐—œ๐—ป๐—ฑ๐˜‚๐˜€๐˜๐—ฟ๐—ถ๐—ฎ๐—น ๐—•๐—ฎ๐—ป๐—ธ ๐—ผ๐—ณ ๐—œ๐—ฟ๐—ฎ๐—พ ๐Ÿงฉ Products: ๐— ๐—ถ๐—ธ๐—ฟ๐—ผ๐—ง๐—ถ๐—ธ ๐—ฅ๐—•๐Ÿฎ๐Ÿฌ๐Ÿญ๐Ÿญ๐—จ๐—ถ๐—”๐—ฆ, ๐—ฅ๐—ผ๐˜‚๐˜๐—ฒ๐—ฟ๐—ข๐—ฆ ๐Ÿ›ก๏ธ CVE-2018-14847, CVE-2019-3924 Threat actor Blacknet00 claims to have compromised a MikroTik router belonging to the Iraqi Ministry of Finance. The post details multiple vulnerabilities (including CVE-2018-14847 and SNMP misconfigurations) and provides extensive internal network details, routing tables, and lists of connected financial entities, including Rasheed Bank and the Industrial Bank of Iraq. #AccessSale #InitialAccess #ThreatIntel #CTI

    0000092
    687 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
OSmikrotikrouteros---
OSmikrotikrouteros---

Explore more