CVE-2026-23808

A

vulnerability has been identified in a standardized wireless roaming protocol that could enable a malicious actor to install an attacker-controlled Group Temporal Key (GTK) on a client device. Successful exploitation of this vulnerability could allow a remote malicious actor to perform unauthorized frame injection, bypass client isolation, interfere with cross-client traffic, and compromise network segmentation, integrity, and confidentiality.

Configurations

No configuration.

History

04 Mar 2026, 18:16

Type Values Removed Values Added
CWE CWE-94

04 Mar 2026, 17:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-04 17:16

Updated : 2026-03-04 18:16


NVD link : CVE-2026-23808

Mitre link : CVE-2026-23808

CVE.ORG link : CVE-2026-23808


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')