Skip to content

COMFAST vulnerabilities

3 CVEs tracked

COMFAST appears in our reporting with a concentrated set of severe vulnerabilities in its CF-N1-S model running firmware version 2.6.0.1. The key incidents involve remote exploitation flaws in the CGI interface, notably command injection through the 'ptest_macaddress' and 'ptest_ssid' parameters, along with a stack-based buffer overflow in the URI parameter parsing function. Defenders should prioritize restricting access to the management interfaces, such as the `/cgi-bin/mbox-config` endpoint, on these devices and apply compensating controls like network segmentation until patches are available from the vendor.

This vendor's CVEs3

This hub is built from skopnix's own reporting on COMFAST: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.