Vulnerability Database

309,234

Total vulnerabilities in the database

CVE-2019-13954

Mikrotik RouterOS before 6.44.5 (long-term release tree) is vulnerable to memory exhaustion. By sending a crafted HTTP request, an authenticated remote attacker can crash the HTTP server and in some circumstances reboot the system. Malicious code cannot be injected.

  • Published: Jul 26, 2019
  • Updated: Nov 9, 2025
  • CVE: CVE-2019-13954
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:L/Au:S/C:N/I:N/A:C

CWEs: