Exploit for CVE-2023-52160
The implementation of PEAP in wpa_supplicant through 2.10 allows authentication bypass. For a successful attack, wpa_supplicant must be configured to not verify the network's TLS certificate during Phase 1 authentication, and an eap_peap_decrypt vulnerability can then be abused to skip Phase 2 authentication. The attack vector is sending an EAP-TLV Success packet instead of starting Phase 2. This allows an adversary to impersonate Enterprise Wi-Fi networks.
Published: 2024-02-22
CVSS: 6.5
CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Download Exploit for CVE-2023-52160 here:
Use Tor Browser to access .onion links.
Check our team here:
https://tatramed.sk/exploit-255-cve-2025-30406/
https://tatramed.sk/exploit-9-cve-2024-38808/
https://tatramed.sk/exploit-339-cve-2017-12237/

ADRESA
Líščie údolie 9
841 04 Bratislava
Slovenská republika
KONTAKTY
tel. č.:+421 2 6020 2301
tel. č.: +421 2 6020 2351
e-mail: info@tatramed.sk
FAKTURAČNÉ ÚDAJE
IČO: 47025328
DIČ: 2023706751
IČ DPH: SK2023706751
Copyright 2019-2024 TatraMed Software s.r.o. © All Rights Reserved | Made by MERINEO