Výsledky hledání

výrobce: Mikrotik× v celém archivu zrušit filtry

2 karet z 2 položek CZ · EN/orig

1

1

CVE-2025-42611 – Authentication bypass in multiple RouterOS services caused by improper certificate validation

Summary RouterOS provides various services that rely on correct verification of client and server certificates to secure confidentiality and integrity of communications. This includes OpenVPN, CAPsMAN, Dot1x (802.1X), among others. The vulnerability lies in shared certificate validation logic which uses the system certificate store that is shared and equally trusted by all system services. This causes confusion of scope, allowing any certificate authority present in the system-wide trust store…

EPSS 0.00 CVSS 6.5 CVE-2025-42611 Mikrotik SI

SI-CERT ·