VYPR
Critical severity9.1NVD Advisory· Published Jul 19, 2023· Updated Jun 17, 2026

CVE-2023-30799

CVE-2023-30799

Description

MikroTik RouterOS stable before 6.49.7 and long-term through 6.48.6 are vulnerable to a privilege escalation issue. A remote and authenticated attacker can escalate privileges from admin to super-admin on the Winbox or HTTP interface. The attacker can abuse this vulnerability to execute arbitrary code on the system.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Mikrotik/Routeros4 versions
    cpe:2.3:o:mikrotik:routeros:*:*:*:*:-:*:*:*+ 3 more
    • cpe:2.3:o:mikrotik:routeros:*:*:*:*:-:*:*:*range: >=6.34,<6.49.7
    • cpe:2.3:o:mikrotik:routeros:*:*:*:*:ltr:*:*:*range: <=6.48.7
    • (no CPE)range: <6.49.7, <=6.48.6
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.