: Abuse of the agent's communication protocol on the Winbox port.
CVE-2018-1156 allows an (or bypass-authenticated) attacker to write arbitrary files via the WinBox protocol’s file_write primitive.
allowed unauthenticated attackers to proxy traffic through the router via the "The Dude" agent binary.
Regularly check for updates in the RouterOS QuickSet menu or via the command line.