CVE-2026-23811: Unauthorized Bi-Directional Traffic Interception via L2/L3 Manipulation
A vulnerability in the client isolation mechanism may allow an attacker to bypass Layer 2 (L2) communication restrictions between clients and redirect traffic at Layer 3 (L3). In addition to bypassing policy enforcement, successful exploitation - when combined with a port-stealing attack - may enable a bi-directional Machine-in-the-Middle (MitM) attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-23811?
CVE-2026-23811 is classified as a critical vulnerability due to its potential for unauthorized traffic interception.
How do I fix CVE-2026-23811?
To fix CVE-2026-23811, update your ArubaOS to a version that is not affected by this vulnerability.
What type of attack does CVE-2026-23811 enable?
CVE-2026-23811 enables attackers to bypass Layer 2 communication restrictions and redirect Layer 3 traffic.
Which software versions are affected by CVE-2026-23811?
CVE-2026-23811 affects various versions of ArubaOS ranging from 6.5.4.0 to 10.8.0.0.
Who is affected by CVE-2026-23811?
Organizations using vulnerable versions of ArubaOS in their network infrastructure may be affected by CVE-2026-23811.