Critical severity10.0NVD Advisory· Published Sep 20, 2026
CVE-2026-94003
CVE-2026-94003
Description
A vulnerability has been found in Comfast CF-N1-S 2.6.0.1. Impacted is the function get_css_path_from_uri of the file /cgi-bin/mbox-config of the component Web Management Interface. The manipulation leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.