CVE-2022-45313: MikroTik RouterOS
High severity, CVSS 8.8. EPSS: 1.6% chance of exploitation in the next 30 days.
Mikrotik RouterOs before stable v7.5 was discovered to contain an out-of-bounds read in the hotspot process. This vulnerability allows attackers to execute arbitrary code via a crafted nova message.
Affected products
- MikroTik RouterOS: before 7.5 (fixed in 7.5)
Published 2022-12-05. Last modified 2026-06-17.