Critical SSH Auth Bypass CVE-2026-67276 Found in MikroTik RouterOS, Patch Now
India's CERT-In has rated CVE-2026-67276 as critical, warning that the flaw allows attackers to bypass SSH authentication on MikroTik routers using a forged RSA key and signature, potentially granting full administrative access. The vulnerability affects RouterOS versions across three branches: 6.x before 6.49.21, 7.0–7.22.x before 7.23.4, and 7.24.x before 7.24.2. MikroTik's September 2026 advisory also addresses two related flaws — a privilege escalation bug and a denial-of-service vulnerability in the bandwidth-test service. Administrators are urged to upgrade to the fixed releases immediately, as CERT-In confirmed no workaround can substitute for patching. Additional mitigations include restricting SSH access to trusted networks, disabling unused services, and monitoring administrative logins for suspicious activity.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.

Discussion (0)
Log in to join the discussion and vote.
Log in