Skip to content
EXPLOIT
.CC
CVEs
Search
About
synced 41 MIN AGO
T-41M
01
Record
STATE: —
02
Description
SRC: CNA
03
Metadata
SCHEMA: CVE JSON 5
04
Affected products
PAIRS: —
05
References
REFS: —
01
Record
STATE: PUBLISHED
CVE-2026-77683
Comfast CF-N1-S mbox-config system command injection
Critical
PUBLISHED
CNA: VulDB
Base score
9.4
CVSS v4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P
View raw JSON
CVE Program record
02
Description
CNA: VulDB
Comfast CF-N1-S mbox-config system command injection
03
Metadata
SCHEMA: 5.2
Published
2026-08-21 10:15Z
15 HR AGO
Last updated
2026-08-21 13:52Z
11 HR AGO
Reserved
2026-08-21
Assigning CNA
VulDB
Record state
PUBLISHED
Severity
Critical (CVSS 9.4)
CVSS vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P
Weaknesses
CWE-74
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
Class
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
Class
SSVC decision
Exploitation
poc
Automatable
no
Technical Impact
total
Data version
5.2
Document digest
96f755044e038d0ecf0d1d8d62ed2f485acc45456c94f2c2ce21dc1ba8a8372c
04
Affected products
PAIRS: 1
Vendor
Product
Versions
Platforms
Comfast
CF-N1-S
2.6.0.1
—
05
References
REFS: 5
vuldb.com
VDB-394033 | Comfast CF-N1-S mbox-config system command injection
https://vuldb.com/vuln/394033
vdb-entry
technical-description
vuldb.com
VDB-394033 | CTI Indicators (IOB, IOC, TTP, IOA)
https://vuldb.com/vuln/394033/cti
signature
permissions-required
vuldb.com
CVE-2026-77683 | CVE Analysis and Report
https://vuldb.com/cve/CVE-2026-77683
third-party-advisory
vuldb.com
Submit #881058 | Comfast CF-N1-S V2.6.0.1 Command Injection
https://vuldb.com/submit/881058
third-party-advisory
github.com
https://github.com/AdminSafe/CVE/issues/8
exploit
issue-tracking