CVE-2020-10136
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/06/2020
Last modified:
03/11/2025
Description
IP-in-IP protocol specifies IP Encapsulation within IP standard (RFC 2003, STD 1) that decapsulate and route IP-in-IP traffic is vulnerable to spoofing, access-control bypass and other unexpected behavior due to the lack of validation to verify network packets before decapsulation and routing.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sk3\(1.1\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sk3\(2.1\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sk3\(2.1a\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sk3\(2.2\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sk3\(2.2b\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sm1\(5.1\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sm1\(5.2\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sm1\(5.2a\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sm1\(5.2b\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sm1\(5.2c\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sm3\(1.1\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sm3\(1.1a\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sm3\(1.1b\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sm3\(1.1c\):*:*:*:*:*:*:* | ||
| cpe:2.3:o:cisco:nx-os:5.2\(1\)sm3\(2.1\):*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://datatracker.ietf.org/doc/html/rfc6169
- https://kb.cert.org/vuls/id/636397/
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nxos-ipip-dos-kCT9X4
- https://www.digi.com/resources/security
- https://www.kb.cert.org/vuls/id/636397
- https://datatracker.ietf.org/doc/html/rfc6169
- https://kb.cert.org/vuls/id/636397/
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nxos-ipip-dos-kCT9X4
- https://www.digi.com/resources/security
- https://www.kb.cert.org/vuls/id/199397
- https://www.kb.cert.org/vuls/id/636397



