A buffer overflow was found in the MikroTik RouterOS SMB service when processing NetBIOS session request messages
Published Mar 19, 2018 ·Due Sep 29, 2022
9.8
CRITICALCVSS 3.1
EPSS 60.81%
Description
A buffer overflow was found in the MikroTik RouterOS SMB service when processing NetBIOS session request messages. Remote attackers with access to the service can exploit this vulnerability and gain code execution on the system. The overflow occurs before authentication takes place, so it is possible for an unauthenticated remote attacker to exploit it. All architectures and all devices running RouterOS before versions 6.41.3/6.42rc27 are vulnerable.
Affected products
No data.
- < 6.41.3
- 6.42
- 6.42
- 6.42
- 6.42
- 6.42
- 6.42
- 6.42
- 6.42
- 6.42
- 6.42
- 6.42
- 6.42
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
No CVSS v3.0 score for this CVE.
AV:N/AC:L/Au:N/C:C/I:C/A:C
Date Added
Sep 8, 2022
Patch Due
Sep 29, 2022
Required Action
Apply updates per vendor instructions.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
ActiveAutomatable
YesTechnical Impact
TotalDecision
n/aAssessed Feb 7, 2025 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2021–2026- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (44 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 60.81% (0.60809) | 99.13th | v5 (v2026.06.15) |
| Jun 15, 2026 | 61.02% (0.61018) | 99.04th | v5 (v2026.06.15) |
| Mar 19, 2026 | 87.56% (0.87557) | 99.45th | v4 (v2025.03.14) |
| Feb 21, 2026 | 85.90% (0.85898) | 99.37th | v4 (v2025.03.14) |
| Jan 28, 2026 | 84.56% (0.84562) | 99.30th | v4 (v2025.03.14) |
| Dec 28, 2025 | 85.90% (0.85898) | 99.35th | v4 (v2025.03.14) |
| Dec 27, 2025 | 87.69% (0.87690) | 99.44th | v4 (v2025.03.14) |
| Dec 15, 2025 | 85.90% (0.85898) | 99.34th | v4 (v2025.03.14) |
| Dec 3, 2025 | 87.03% (0.87032) | 99.41th | v4 (v2025.03.14) |
| Nov 18, 2025 | 80.95% (0.80948) | 99.23th | v4 (v2025.03.14) |
| Nov 8, 2025 | 79.86% (0.79865) | 99.05th | v4 (v2025.03.14) |
| Oct 28, 2025 | 84.30% (0.84296) | 99.27th | v4 (v2025.03.14) |
| Oct 27, 2025 | 86.42% (0.86416) | 99.36th | v4 (v2025.03.14) |
| Oct 1, 2025 | 84.30% (0.84296) | 99.29th | v4 (v2025.03.14) |
| Sep 13, 2025 | 86.42% (0.86416) | 99.37th | v4 (v2025.03.14) |
| Jul 30, 2025 | 87.80% (0.87795) | 99.43th | v4 (v2025.03.14) |
| Mar 30, 2025 | 86.03% (0.86030) | 99.35th | v4 (v2025.03.14) |
| Mar 29, 2025 | 87.67% (0.87665) | 99.34th | v4 (v2025.03.14) |
| Mar 23, 2025 | 86.03% (0.86030) | 99.35th | v4 (v2025.03.14) |
| Mar 17, 2025 | 80.36% (0.80359) | 99.08th | v4 (v2025.03.14) |
| Dec 17, 2024 | 80.93% (0.80933) | 98.58th | v3 (v2023.03.01) |
| Sep 12, 2024 | 82.21% (0.82209) | 98.47th | v3 (v2023.03.01) |
| Jun 22, 2024 | 85.48% (0.85476) | 98.57th | v3 (v2023.03.01) |
| Feb 27, 2024 | 88.06% (0.88065) | 98.57th | v3 (v2023.03.01) |
| Jan 27, 2024 | 89.81% (0.89809) | 98.56th | v3 (v2023.03.01) |
| Jan 2, 2024 | 88.67% (0.88675) | 98.44th | v3 (v2023.03.01) |
| Dec 3, 2023 | 90.55% (0.90551) | 98.52th | v3 (v2023.03.01) |
| Oct 13, 2023 | 90.50% (0.90503) | 98.46th | v3 (v2023.03.01) |
| Sep 19, 2023 | 90.19% (0.90192) | 98.41th | v3 (v2023.03.01) |
| Aug 31, 2023 | 90.48% (0.90485) | 98.41th | v3 (v2023.03.01) |
| Aug 10, 2023 | 90.85% (0.90855) | 98.43th | v3 (v2023.03.01) |
| Jul 19, 2023 | 90.84% (0.90839) | 98.40th | v3 (v2023.03.01) |
| Jun 11, 2023 | 92.38% (0.92378) | 98.49th | v3 (v2023.03.01) |
| May 6, 2023 | 90.92% (0.90924) | 98.32th | v3 (v2023.03.01) |
| Mar 31, 2023 | 91.16% (0.91155) | 98.30th | v3 (v2023.03.01) |
| Mar 13, 2023 | 91.39% (0.91387) | 98.30th | v3 (v2023.03.01) |
| Mar 7, 2023 | 93.71% (0.93710) | 98.54th | v3 (v2023.03.01) |
| Mar 6, 2023 | 12.13% (0.12131) | 95.19th | v2 (v2022.01.01) |
| Apr 1, 2022 | 12.13% (0.12131) | 94.81th | v2 (v2022.01.01) |
| Feb 4, 2022 | 12.13% (0.12131) | 89.22th | v2 (v2022.01.01) |
| Feb 3, 2022 | 9.47% (0.09469) | 87.07th | v1 |
| Jan 6, 2022 | 9.47% (0.09469) | 86.91th | v1 |
| Sep 1, 2021 | 9.47% (0.09469) | 94.10th | v1 |
| Apr 14, 2021 | 9.47% (0.09469) | 0.00th | v1 |
References (5)
- http://seclists.org/fulldisclosure/2018/Mar/38 mailing-listx_refsource_FULLDISCExploitMailing ListThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/103427 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-7445 government-resourceUS Government Resource
- https://www.coresecurity.com/advisories/mikrotik-routeros-smb-buffer-overflow x_refsource_MISCExploitThird Party Advisory
- https://www.exploit-db.com/exploits/44290/ exploitx_refsource_EXPLOIT-DBThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| http://seclists.org/fulldisclosure/2018/Mar/38 | mailing-listx_refsource_FULLDISCExploitMailing ListThird Party AdvisoryVDB Entry | |
| http://www.securityfocus.com/bid/103427 | vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry | |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-7445 | government-resourceUS Government Resource | |
| https://www.coresecurity.com/advisories/mikrotik-routeros-smb-buffer-overflow | x_refsource_MISCExploitThird Party Advisory | |
| https://www.exploit-db.com/exploits/44290/ | exploitx_refsource_EXPLOIT-DBThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.