← volver al portal

MikroTik Vulnerability Chain Enables Administrative Access Without Credentials or SSH Keys

Researchers discovered a chain of vulnerabilities in MikroTik RouterOS that allows attackers to gain full administrative control of Internet-exposed…

If you manage MikroTik routers exposed to the Internet, this is critical. Immediately contact MikroTik for patches addressing CVE-2026-67279 and CVE-2026-86060, and apply them urgently. Consider segmenting or isolating these devices from public exposure while waiting for an official update.