Security Advisory

CVE-2026-23808

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-03-04 16:09:17
Last updated 2026-04-01 16:22:33
Assigner hpe
State PUBLISHED

Description

A vulnerability has been identified in a standardized wireless roaming protocol that could enable a malicious actor to install an attacker-controlled Group Temporal Key (GTK) on a client device. Successful exploitation of this vulnerability could allow a remote malicious actor to perform unauthorized frame injection, bypass client isolation, interfere with cross-client traffic, and compromise network segmentation, integrity, and confidentiality.