LOW 2.1 NVD
CVE-2026-77004
A flaw has been found in Comfast CF-N1-S 2.6.0.1. This impacts the function sprintf of the file /cgi-bin/mbox-config?method=SET§ion=ptest_sn. Executing a ma
A flaw has been found in Comfast CF-N1-S 2.6.0.1. This impacts the function sprintf of the file /cgi-bin/mbox-config?method=SET§ion=ptest_sn. Executing a manipulation of the argument sn can lead to command injection. The attack can be launched remotely. The exploit has been published and may be used.
References
- https://github.com/lxiansheng488-bit/-/blob/main/%E5%8E%82%E5%95%86comefast%20%20CF-N1-S%2
- https://vuldb.com/cve/CVE-2026-77004
- https://vuldb.com/submit/880584
- https://vuldb.com/vuln/393623
- https://vuldb.com/vuln/393623/cti
This low severity vulnerability with a CVSS score of 2.1 was published on 2026-08-20 via NVD.
vulnfeed aggregates 11502 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.