Security Advisory
CVE-2019-3981
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
MikroTik Winbox 3.20 and below is vulnerable to man in the middle attacks. A man in the middle can downgrade the clients authentication protocol and recover the users username and MD5 hashed password.