chiprook
← Security
SecuritySeptember 30, 2026, 22:49

CISA warns of critical pre-auth RCE flaw in MikroTik RouterOS

CISA is warning about CVE-2026-84411, a critical pre-authentication integer underflow in MikroTik RouterOS web management that allows remote code execution as root or denial of service with a single crafted request. Versions below 7.24 are affected.

CISA warns of critical pre-auth RCE flaw in MikroTik RouterOS
#MikroTik#CISA#RouterOS
Read next
Security

CISA adds Microsoft SharePoint and MikroTik RouterOS flaws to KEV catalog

Security

CISA: Critical VMware RCE flaw now exploited by ransomware gangs

Security

Exposed Router Management: 8.09 Million RouterOS Assets and the 9,560 That Still Answer on SSH

Security

CVE-2026-8452 in Citrix NetScaler: SAML parsing overflow leads to pre-auth RCE