info winbox's bug

http://www.133tsec.com/2012/04/27/0day-mikrotik-winbox-client-side-attack-a-remote-code-execution-exploit/


is it true? this is a real winbox’s bug?
In this period I have a serious ddos attack.. is it possible Can they attack me with this method?

thank you

This is a man in the middle attack, so you would have to attempt to connect to their server with winbox. So you should be good as long as you’re not trying to connect to random people’s router. Also, the post you linked to is over a year old, so mikrotik may have fixed the vulnerability.

in this moment I have a problem.
internet doesn’t work.
I go to my sxt with winbox and I see in the wlan and in the Gateway the upload at 600kbps (max), but in the ethernet nothing.
I go to dns cache and I see a lot of request of some servers, link akamai.net and similar.

What is it?

There is a bug in miktrotik? I have the newer version 6.4

is a ddos attack or something like that?

thank you