VYPR
Medium severity6.5NVD Advisory· Published Aug 26, 2019· Updated Jun 17, 2026

CVE-2019-15055

CVE-2019-15055

Description

MikroTik RouterOS through 6.44.5 and 6.45.x through 6.45.3 improperly handles the disk name, which allows authenticated users to delete arbitrary files. Attackers can exploit this vulnerability to reset credential storage, which allows them access to the management interface as an administrator without authentication.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Mikrotik/Routeros2 versions
    cpe:2.3:o:mikrotik:routeros:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:mikrotik:routeros:*:*:*:*:*:*:*:*range: <=6.44.5
    • (no CPE)range: <=6.44.5, <=6.45.3
  • MikroTik/RouterOSdescription

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.