Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Client Isolation Bypass via GTK Manipulation
Vulnerability Description
A vulnerability has been identified in a standardized wireless roaming protocol that could enable a malicious actor to install an attacker-controlled Group Temporal Key (GTK) on a client device. Successful exploitation of this vulnerability could allow a remote malicious actor to perform unauthorized frame injection, bypass client isolation, interfere with cross-client traffic, and compromise network segmentation, integrity, and confidentiality.
CVSS Information
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Vulnerability Type
N/A
Vulnerability Title
HPE Aruba Networking Wireless Operating System 安全漏洞
Vulnerability Description
HPE Aruba Networking Wireless Operating System是美国HPE公司的一个无线网络操作系统。 HPE Aruba Networking Wireless Operating System存在安全漏洞,该漏洞源于标准化无线漫游协议存在缺陷,可能导致安装攻击者控制的组临时密钥,从而绕过客户端隔离并破坏网络完整性。
CVSS Information
N/A
Vulnerability Type
N/A