A technique has been identified that adapts a known port-stealing method to Wi-Fi environments that use multiple BSSIDs. By leveraging the relationship between BSSIDs and their associated virtual ports, an attacker could potentially bypass inter-BSSID isolation controls. Successful exploitation may enable an attacker to redirect and intercept the victim's network traffic, potentially resulting in eavesdropping, session hijacking, or denial of service.
References
| Link | Resource |
|---|---|
| https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05026en_us&docLocale=en_US | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
09 Mar 2026, 19:22
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05026en_us&docLocale=en_US - Vendor Advisory | |
| CPE | cpe:2.3:h:arubanetworks:ap-635:-:*:*:*:*:*:*:* cpe:2.3:o:arubanetworks:arubaos:10.8.0.0:*:*:*:*:*:*:* cpe:2.3:o:arubanetworks:arubaos:*:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:7210:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:9004-lte:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:9106:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:7010:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:9004:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:7240xm:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:9012:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:7280:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:ap-654:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:7205:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:9114:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:ap-655:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:9240:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:ap-634:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:7030:-:*:*:*:*:*:*:* cpe:2.3:h:arubanetworks:7220:-:*:*:*:*:*:*:* |
|
| First Time |
Arubanetworks 7280
Arubanetworks 9012 Arubanetworks arubaos Arubanetworks Arubanetworks 9106 Arubanetworks ap-655 Arubanetworks 7030 Arubanetworks 7210 Arubanetworks 7010 Arubanetworks 9114 Arubanetworks 7205 Arubanetworks ap-654 Arubanetworks 7220 Arubanetworks ap-634 Arubanetworks 7240xm Arubanetworks 9004 Arubanetworks 9004-lte Arubanetworks 9240 Arubanetworks ap-635 |
04 Mar 2026, 18:16
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-400 |
04 Mar 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-04 17:16
Updated : 2026-03-09 19:22
NVD link : CVE-2026-23809
Mitre link : CVE-2026-23809
CVE.ORG link : CVE-2026-23809
JSON object : View
Products Affected
arubanetworks
- ap-654
- ap-635
- 9004-lte
- 7220
- 9012
- 9106
- ap-634
- 7010
- arubaos
- 7280
- 9240
- 7240xm
- 7210
- 9114
- ap-655
- 9004
- 7205
- 7030
CWE
CWE-400
Uncontrolled Resource Consumption
