VYPR
Medium severity6.5NVD Advisory· Published May 3, 2021· Updated Jun 17, 2026

CVE-2020-20247

CVE-2020-20247

Description

Mikrotik RouterOs before 6.46.5 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/traceroute process. An authenticated remote attacker can cause a Denial of Service due via the loop counter variable.

Affected products

3
  • Mikrotik/Routeros2 versions
    cpe:2.3:o:mikrotik:routeros:*:*:*:*:-:*:*:*+ 1 more
    • cpe:2.3:o:mikrotik:routeros:*:*:*:*:-:*:*:*range: <6.46.5
    • (no CPE)range: <6.46.5
  • Mikrotik/RouterOsdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.