External risk intelligence

RouterOS SSH RSA Key Check Vulnerability

CVE advisorySeverity: CRITICAL (CVSS 9.2)

CVE-2026-67276

This vulnerability affects RouterOS, an operating system for network routers and appliances. SSH services on such devices are frequently exposed to the public internet for remote management, making this a service that is commonly public-facing by design in real-world deployment scenarios.

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

External exposure likelihood

Horizon Alert

Summary of the vulnerability and why it matters

A critical vulnerability has been identified in RouterOS, affecting how it verifies SSH authentication keys. This could allow an unauthorized individual to gain access as a legitimate user without possessing the private key. The main concern is to confirm if this specific technology is in use within our environment and assess any potential exposure.

  • Key verification flaw allows unauthorized SSH access.
  • Critical issue impacts network router authentication.
  • Confirm relevance and potential exposure.

Attack Path

How an attacker could exploit the issue

An attacker can exploit this vulnerability by initiating an SSH connection to a vulnerable router. By crafting a malicious authentication request, they can bypass standard security checks that omit parts of the RSA public key verification. This allows the attacker to impersonate an authorized user and gain access to the router's command line.

  • Entry condition: Network access to the router.
  • Trigger point: SSH authentication request with a forged signature.
  • Resulting risk: Unauthorized command execution as a user.

Live Threat

Current exploitation, exposure, and threat context

This vulnerability could allow an attacker to impersonate an authorized user over SSH by exploiting a weakness in how public keys are matched. When supported by the advisory, an attacker could gain access to the router's command channel by providing a crafted public key with an exponent of one, bypassing the need for the actual private key.

  • Router command channel and user access at risk.
  • Attacker provides weak public key for authentication.
  • Unauthorized command execution could occur.

Operational Fix

Recommended remediation, mitigation, and detection steps

This critical vulnerability in RouterOS impacts the RSA public key comparison during SSH authentication. Infrastructure and network security teams are primarily responsible for managing and securing these routers. The immediate first step is to identify all deployed instances of RouterOS, determine their internet reachability and business criticality, and locate the accountable system owner. Subsequently, a risk-based remediation plan should be developed, considering vendor coordination for applying the necessary updates.

  • Own by Infrastructure and Network Security teams.
  • Verify SSH exposure and device criticality.
  • Plan and coordinate vendor updates.

Supplementary metadata

Validate whether this threat affects your internet-facing exposure.

Halo Threat Intelligence helps prioritize remediation with Halo Surface Signal and H/A/L/O context. Start exposure validation with a free external attack surface trial.

Frequently asked questions

What is RouterOS and how is it used?

RouterOS is the proprietary operating system developed by MikroTik for their network routing hardware and wireless equipment. It acts as the core software managing traffic, routing protocols, and system administration on these appliances. Many organizations use it to configure complex network environments, often relying on its built-in management services, like SSH, to remotely administer and maintain their network infrastructure.

What is the vulnerability in CVE-2026-67276?

This issue is an Improper Verification of Cryptographic Signature, categorized as CWE-347. When the system handles an SSH authentication request, it fails to fully validate the RSA public key. Specifically, it ignores the exponent portion of the key. This oversight allows an attacker to present a forged public key with a simplified exponent, causing the router to incorrectly accept it as valid even without the corresponding private key.

How does an attacker trigger this SSH authentication bug?

To trigger this, an attacker must have network-level access to the target router's SSH service. By supplying a specially crafted RSA key that uses an exponent of one, the attacker can deceive the authentication process. This bug does not trigger if the router is not actively listening for SSH connections, or if the attacker lacks the ability to initiate an SSH handshake with the device.

Is my network at risk according to Halo Surface Signal?

Halo Surface Signal indicates that this vulnerability is very likely to pose a risk because RouterOS is frequently used for network management, and its SSH services are often intentionally exposed to the public internet for remote access. If your infrastructure has instances of this software facing the internet, they are at a higher level of concern because they are reachable by unauthorized remote actors.

How do I respond if I am running RouterOS?

The primary response is to locate all active RouterOS deployments in your environment and identify which ones are internet-facing. Once mapped, coordinate with your infrastructure teams to prioritize applying the vendor-provided security updates. This issue is resolved in long-term versions 6.49.21 and 7.23.4, as well as the 7.24.2 stable release, which correct the RSA public key comparison flaw.

References