CVE-2020-20212

Executive Summary

Mikrotik RouterOS 6.44.5 (long‑term tree) contains a memory corruption flaw in the /nova/bin/console process. An authenticated remote attacker can trigger a NULL pointer dereference, causing a denial‑of‑service. The vulnerability is not listed in CISA KEV.


Authoritative CVE Metadata - CVSS Base Score: 6.5 (MEDIUM) - Published: 2021-07-07T14:15:09.353 - Last Modified: 2026-09-16T21:17:05.777

Original Description: Mikrotik RouterOs 6.44.5 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/console process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference).

"When fate hands us a lemon, lets try to make lemonade."

— Dale Carnegie
Source: NVD