Impact
The vulnerability is a stack-based buffer overflow triggered by parsing the width and height parameters in the get_para_from_uri function of the /cgi-bin/mbox-config URI handler. Maliciously crafted inputs can overflow the stack, giving an attacker the ability to execute arbitrary code on the device. This corresponds to buffer overflow weaknesses (CWE-119) and stack-based overflow (CWE-121). The effect is potentially complete device compromise with full control of the system.
Affected Systems
Affected hardware is the Comfast CF-N1-S device running firmware version 2.6.0.1. The flaw resides in the device’s web interface in the mbox-config CGI component. No other versions or products are currently listed as affected.
Risk and Exploitability
The CVSS score of 10 indicates critical severity. The EPSS score is not available, and the vulnerability is not yet listed in CISA's KEV catalog, but the lack of reported exploitation does not reduce its inherent risk. Since the attack vector is remote via HTTP, an attacker can target the device over a network. Given the high CVSS and the ability to run code on the device, the likelihood of exploitation is high if the device is exposed to untrusted networks. Administrators should treat this as a high‑risk vulnerability until resolved.
OpenCVE Enrichment