CVE-2020-26143: Alfa AWUS036H Firmware
Medium severity, CVSS 6.5. EPSS: 4.2% chance of exploitation in the next 30 days.
An issue was discovered in the ALFA Windows 10 driver 1030.36.604 for AWUS036ACH. The WEP, WPA, WPA2, and WPA3 implementations accept fragmented plaintext frames in a protected Wi-Fi network. An adversary can abuse this to inject arbitrary data frames independent of the network configuration.
Affected products
- Alfa AWUS036H Firmware: version 1030.36.604 only
- Arista C-65 Firmware: affected versions not specified
- Arista C-75 Firmware: affected versions not specified
- Arista O-90 Firmware: affected versions not specified
- Arista W-68 Firmware: affected versions not specified
- Siemens Scalance w700 Ieee 802.11n Firmware: any version
Published 2021-05-11. Last modified 2026-06-17.