MEDIUM

CVE-2020-20230

CVSS v3

6.5

MEDIUM

EPSS Score

1.2%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

Mikrotik RouterOs before stable 6.47 suffers from an uncontrolled resource consumption in the sshd process. An authenticated remote attacker can cause a Denial of Service due to overloading the systems CPU.

Technical details

Published
7/19/2021

Frequently asked questions

What is CVE-2020-20230?

Mikrotik RouterOs before stable 6.47 suffers from an uncontrolled resource consumption in the sshd process. An authenticated remote attacker can cause a Denial of Service due to overloading the systems CPU.

Is CVE-2020-20230 actively exploited?

Active exploitation of CVE-2020-20230 has not been confirmed. The EPSS score is 1.2%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2020-20230?

CVE-2020-20230 has a CVSS v3 base score of 6.5 (MEDIUM severity).

Is CVE-2020-20230 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.