在受影响的 RouterOS 版本中,Web 管理服务存在整数下溢漏洞,该漏洞出现在 HTTP 请求体处理逻辑中,且可在身份验证前被访问。未认证的网络攻击者可以利用此漏洞,通过发送单个精心构造的请求,以 root 权限实现任意代码执行,或导致拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet