Description
A vulnerability was found in FAST FAC1200R 5.0_20201119_1.0.2. Affected is the function parse_advertisement_frame of the component devdiscover Service. The manipulation results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
Published: 2026-09-28
Score: 9.4 Critical
EPSS: n/a
KEV: No
Impact: Remote Code Execution via stack-based buffer overflow in FAST FAC1200R devdiscover Service
Action: Immediate Mitigation
AI Analysis

Impact

This vulnerability originates in the parse_advertisement_frame function of the devdiscover Service in FAST FAC1200R firmware 5.0_20201119_1.0.2. An attacker can supply a crafted frame that causes a stack-based buffer overflow, allowing arbitrary code execution or denial of service on the device. The flaw is a classic buffer overflow (CWE‑119) combined with improper stack guard handling (CWE‑121). The vendor has not released a fix and the exploit has been made public.

Affected Systems

The affected product is the FAST FAC1200R device. No additional vendor or product prefixes are listed beyond FAST:FAC1200R, and the specific firmware snapshot 5.0_20201119_1.0.2 is identified as vulnerable.

Risk and Exploitability

The CVSS score of 9.4 indicates critical severity, and the EPSS score is not available but the exploit is publicly disclosed, making exploitation likely in environments where the service is reachable. There is no listing in the CISA KEV catalog, but the remote nature of the attack and lack of vendor response increase risk. Without a patch, the vulnerability can be exercised by any attacker who can reach the devdiscover Service, typically via the network interface the device advertises. The attack likely requires only the ability to transmit a malformed frame to the service, which may be possible over local or remote networks depending on the device exposure.

Generated by OpenCVE AI on September 28, 2026 at 11:51 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Check the FAST vendor website for any firmware update that addresses the buffer overflow in the devdiscover Service or later release that contains stack protection changes
  • If a patch is not available, enforce network segmentation or firewalls to block external traffic to the devdiscover service port, reducing exposure from remote hosts
  • Apply system hardening measures such as enabling stack canaries or bounds checking in the compiled firmware, or use a custom wrapper that validates frame sizes before processing

Generated by OpenCVE AI on September 28, 2026 at 11:51 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 28 Sep 2026 10:15:00 +0000

Type Values Removed Values Added
Description A vulnerability was found in FAST FAC1200R 5.0_20201119_1.0.2. Affected is the function parse_advertisement_frame of the component devdiscover Service. The manipulation results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
Title FAST FAC1200R devdiscover Service parse_advertisement_frame stack-based overflow
First Time appeared Fast
Fast fac1200r
Weaknesses CWE-119
CWE-121
CPEs cpe:2.3:a:fast:fac1200r:*:*:*:*:*:*:*:*
Vendors & Products Fast
Fast fac1200r
References
Metrics cvssV2_0

{'score': 9, 'vector': 'AV:N/AC:L/Au:S/C:C/I:C/A:C/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 9.9, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 9.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 9.4, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-09-28T10:00:07.705Z

Reserved: 2026-09-27T14:30:30.918Z

Link: CVE-2026-101037

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-28T10:16:42.793

Modified: 2026-09-28T10:16:42.793

Link: CVE-2026-101037

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-28T12:00:12Z

Weaknesses
  • CWE-119

    Improper Restriction of Operations within the Bounds of a Memory Buffer

  • CWE-121

    Stack-based Buffer Overflow