A vulnerability was detected in Comfast CF-N1 2.6.0. This...
Moderate severity
Unreviewed
Published
Aug 28, 2025
to the GitHub Advisory Database
•
Updated Sep 11, 2025
Description
Published by the National Vulnerability Database
Aug 28, 2025
Published to the GitHub Advisory Database
Aug 28, 2025
Last updated
Sep 11, 2025
A vulnerability was detected in Comfast CF-N1 2.6.0. This impacts the function multi_pppoe of the file /usr/bin/webmgnt. Performing manipulation of the argument phy_interface results in command injection. The attack may be initiated remotely. The exploit is now public and may be used.
References