Security Advisory

CVE-2020-5720

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-02-06 16:51:16
Last updated 2024-08-04 08:39:25
Assigner tenable
State PUBLISHED

Description

MikroTik WinBox before 3.21 is vulnerable to a path traversal vulnerability that allows creation of arbitrary files wherevere WinBox has write permissions. WinBox is vulnerable to this attack if it connects to a malicious endpoint or if an attacker mounts a man in the middle attack.