MikroTik RouterOS through 6.42 allows unauthenticated remote attackers to read arbitrary files and remote authenticated attackers to write arbitrary files due to a directory traversal vulnerability in the WinBox interface.
Loading...
Loading...
Score elevated to 9.1 because this CVE is listed on the CISA Known Exploited Vulnerabilities catalog (added 2021-12-01), indicating real-world exploitation has been confirmed by US federal agencies. NVD baseline CVSS 9.1 retained for reference. Confidence: HIGH.
MikroTik RouterOS through 6.42 allows unauthenticated remote attackers to read arbitrary files and remote authenticated attackers to write arbitrary files due to a directory traversal vulnerability in the WinBox interface.
August 2, 2018
November 7, 2025
MITRE Common Weakness Enumeration — the root-cause categories this CVE belongs to.
Every time one of our enrichment pipelines (NVD, MITRE cvelistV5, EPSS, CISA KEV, GHSA, OSV, vendor advisories) ran against this CVE. Most recent first.
Working exploit code is in the public domain (1 Metasploit module) (8 GitHub PoCs) (1 Exploit-DB entry). Defenders should treat patch urgency accordingly — public PoCs typically lead to mass-exploitation within 24-72 hours.
A PoC exploit for CVE-2018-14847 - MikroTik WinBox File Read
Open source ↗By the Way is an exploit that enables a root shell on Mikrotik devices running RouterOS versions:
Open source ↗This is a proof of concept of the critical WinBox vulnerability (CVE-2018-14847) which allows for arbitrary file read of plain text passwords. The vulnerability has long since been fixed, so this project has ended and will not be supported or updated anymore. You can fork it and update it yourself instead.
Open source ↗PoC of CVE-2018-14847 Mikrotik Vulnerability using simple script
Open source ↗Mass MikroTik WinBox Exploitation tool, CVE-2018-14847
Open source ↗MikroTik RouterOS Winbox未经身份验证的任意文件读/写漏洞
Open source ↗Automated version of CVE-2018-14847 (MikroTik Exploit)
Open source ↗MicroTik RouterOS < 6.43rc3 - Remote Root
Open source ↗C# implementation of BasuCert/WinboxPoC [Winbox Critical Vulnerability (CVE-2018-14847)]
Open source ↗Mikrotik Winbox Arbitrary File Read
Open source ↗See which npm, PyPI, Go, and Maven packages are affected by CVE-2018-14847
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.