Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IPv4-in-IPv6 and IPv6-in-IPv6 tunneling (RFC 2473) do not require the validation or verification of the source of a network packet, allowing an attacker to spoof and route arbitrary traffic via an exposed network interface. This is a similar issue to CVE-2020-10136.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:N
Vulnerability Type
通信信道源的不正确验证
Vulnerability Title
IPv6-in-IPv4 tunneling 安全漏洞
Vulnerability Description
IPv6-in-IPv4 tunneling是IETF组织的一个IPv6主机和路由器的基本转换机制。 IPv6-in-IPv4 tunneling 存在安全漏洞,该漏洞源于未验证网络数据包源,导致攻击者通过暴露的网络接口伪造并路由任意流量。
CVSS Information
N/A
Vulnerability Type
N/A