mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 23:27:33 +02:00
1.0 KiB
1.0 KiB
CVE-2020-10136
Description
IP-in-IP protocol specifies IP Encapsulation within IP standard (RFC 2003, STD 1) that decapsulate and route IP-in-IP traffic is vulnerable to spoofing, access-control bypass and other unexpected behavior due to the lack of validation to verify network packets before decapsulation and routing.
POC
Reference
- https://kb.cert.org/vuls/id/636397/
- https://www.digi.com/resources/security
- https://www.kb.cert.org/vuls/id/636397