CVE-2025-23019
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Summary
CVE-2025-23019 is a vulnerability affecting IPv6-in-IPv4 tunneling as defined in RFC 4213. An attacker can exploit this issue by spoofing and routing traffic through an exposed network interface. This vulnerability poses a significant risk, as it allows unauthorized access and potential data theft or manipulation. The tunneling feature, designed to enable IPv6 communication over IPv4 networks, becomes a weakness when improperly configured, leading to potential security breaches. Organizations must ensure that their network interfaces are secured against this threat to protect their critical data and systems.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Ietf