CVE-2020-11896
CRITICALTreck TCP/IP < 6.0.1.66 - Remote Code Execution via IPv4 Tunneling
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2020-11896. PoCs published by Fans0n-Fan, 0xkol.
AI-analyzed exploit summary This repository contains a scanner for detecting devices using the Treck TCP/IP stack by sending custom ICMP packets (type 0xa5) and checking for specific responses. It also includes a PoC for CVE-2020-11896, which sends malformed UDP packets to trigger a potential vulnerability.
Description
The Treck TCP/IP stack before 6.0.1.66 allows Remote Code Execution, related to IPv4 tunneling.
Exploits (2)
This repository contains a scanner for detecting devices using the Treck TCP/IP stack by sending custom ICMP packets (type 0xa5) and checking for specific responses. It also includes a PoC for CVE-2020-11896, which sends malformed UDP packets to trigger a potential vulnerability.
This is a functional PoC exploit for CVE-2020-11896, targeting a heap-based buffer overflow in the Treck TCP/IP stack (Ripple20) on Digi Connect ME 9210 devices. It achieves remote code execution via a multi-stage attack involving ICMP and UDP packet manipulation.
References (11)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H