A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET§ion=ptest_ssid of the component CGI Interface. This manipulation of the argument ssid causes os command injection. Remote exploitation of the attack is possible. The exploit has been published and may be used.
Metrics
Affected Vendors & Products
References
History
Tue, 18 Aug 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in COMFAST CF-N1-S 2.6.0.1. This impacts the function sub_44B438 of the file /cgi-bin/mbox-config?method=SET§ion=ptest_ssid of the component CGI Interface. This manipulation of the argument ssid causes os command injection. Remote exploitation of the attack is possible. The exploit has been published and may be used. | |
| Title | COMFAST CF-N1-S CGI mbox-config sub_44B438 os command injection | |
| First Time appeared |
Comfast
Comfast cf-n1-s |
|
| Weaknesses | CWE-77 CWE-78 |
|
| CPEs | cpe:2.3:a:comfast:cf-n1-s:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Comfast
Comfast cf-n1-s |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-18T01:45:09.700Z
Reserved: 2026-08-17T16:46:50.116Z
Link: CVE-2026-75094
No data.
Status : Received
Published: 2026-08-18T02:17:30.757
Modified: 2026-08-18T02:17:30.757
Link: CVE-2026-75094
No data.
OpenCVE Enrichment
Updated: 2026-08-18T03:45:04Z