Mathy Vanhoef
16 exploits
Active since Nov 2013
IEEE P802.11-REVme D1.1-D7.0 - Frame Injection via Non-SSP A-MSDU Handling
CVSS 9.1
FreeRADIUS 3.0.0-3.0.19 - Password Information Leak via EAP-pwd Handshake
CVSS 6.5
IEEE 802.11 - Arbitrary Network Packet Injection and Data Exfiltration via Fragment Cache Attack
CVSS 3.5
IEEE 802.11 - Use of a Broken or Risky Cryptographic Algorithm
CVSS 2.6
IEEE 802.11 - Unauthenticated Packet Injection via A-MSDU Flag Manipulation
CVSS 3.5
NetBSD 7.1 - Unauthenticated EAPOL Frame Forwarding
CVSS 5.3
ALFA AWUS036H Firmware - Use of a Broken or Risky Cryptographic Algorithm
CVSS 6.5
ALFA Windows 10 driver <6.1316.1209 - Info Disclosure
CVSS 6.5
OpenBSD 6.6 - Network Packet Injection via Fragmented Frame Handling
CVSS 5.3
ALFA AWUS036ACH Windows 10 Driver 1030.36.604 - Arbitrary Frame Injection via Fragmented Plaintext Frames
CVSS 6.5
Samsung Galaxy S3 i9305 Firmware - Unauthenticated Network Packet Injection via Plaintext A-MSDU Frame Acceptance
CVSS 6.5
Samsung Galaxy S3 i9305 Firmware - Arbitrary Network Packet Injection via Fragment Acceptance
CVSS 6.5
Samsung Galaxy S3 i9305 Firmware - Fragment Reassembly Data Exfiltration via Non-Consecutive Packet Numbers
CVSS 5.3
Linux kernel 5.8.9 - Info Disclosure
CVSS 5.4
Linux Kernel < 5.12.13 - Denial of Service via 802.11a Frame Injection in mac80211 Radiotap Parser
CVSS 5.5
Linux kernel < 3.12 - Info Disclosure