CVE-2026-23810Disclosure(arubanetworks / 7010)

LOWCVSS 3.1 · LOW

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability in the packet processing logic may allow an authenticated attacker to craft and transmit a malicious Wi-Fi frame that causes an Access Point (AP) to classify the frame as group-addressed traffic and re-encrypt it using the Group Temporal Key (GTK) associated with the victim's BSSID. Successful exploitation may enable GTK-independent traffic injection and, when combined with a port-stealing technique, allows an attacker to redirect intercepted traffic to facilitate machine-in-the-middle (MitM) attacks across BSSID boundaries.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-300

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • 7010
  • 7030
  • 7205
  • 7210

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-03-04); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Products
701070307205721072207240xm728090049004-lte9012

2 versions affected across 18 products

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-03-04: 1Mentions · 2026-03-10: 1Technical Details · 2026-03-04: 1Technical Details · 2026-03-10: 103-0403-10
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-03-041
Disclosure1
2026-03-101
General1
Full discourse2 posts
  • DailyCVE@dailycve
    General

    🟠 HPE Access Points, GTK Re-encryption Bypass, #CVE-2026-23810 (Medium) https://dailycve.com/hpe-access-points-gtk-re-encryption-bypass-cve-2026-23810-medium/

    Post summary

    The tweet announces a medium‑severity CVE‑2026‑23810 involving an HPE Access Point GTK re‑encryption bypass, but it does not supply a PoC, exploit code, or patch details and lacks evidence of active exploitation.

    0000032
    166 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-23810 A vulnerability in the packet processing logic may allow an authenticated attacker to craft and transmit a malicious Wi-Fi frame that causes an Access Point (AP) to c… https://www.cve.org/CVERecord?id=CVE-2026-23810

    Post summary

    The post provides initial technical details about CVE‑2026‑23810, a packet‑processing flaw affecting Wi‑Fi APs, but does not mention a PoC, exploit code, active attacks, patch, or a false‑positive claim.

    00000155
    56.6K followersView on X
CPE platform detail19 entries

19 of 19 entries

PartVendorProductVersionTarget SWTarget HW
HWarubanetworks7010---
HWarubanetworks7030---
HWarubanetworks7205---
HWarubanetworks7210---
HWarubanetworks7220---
HWarubanetworks7240xm---
HWarubanetworks7280---
HWarubanetworks9004---
HWarubanetworks9004-lte---
HWarubanetworks9012---
HWarubanetworks9106---
HWarubanetworks9114---
HWarubanetworks9240---
HWarubanetworksap-634---
HWarubanetworksap-635---
HWarubanetworksap-654---
HWarubanetworksap-655---
OSarubanetworksarubaos---
OSarubanetworksarubaos10.8.0.0--

Explore more