Comfast CF-AC100 Command Injection Vulnerability
Vulnerability
A command injection vulnerability exists in the Comfast CF-AC100 router running firmware version 2.6.0.8. The issue arises in the '/cgi-bin/mbox-config?method=SET§ion=wireless_device_dissoc' endpoint, where the 'mac' parameter is not properly validated. This flaw allows remote attackers to execute arbitrary commands by sending crafted HTTP POST requests. Exploitation requires the attacker to log in and obtain session cookies.
Impact
Successful exploitation allows for arbitrary command execution on the device.
Reproduction
To reproduce this vulnerability, send a POST request to '/cgi-bin/mbox-config?method=SET§ion=wireless_device_dissoc' with a crafted 'mac' parameter that includes the desired command. Ensure to include the necessary cookies for an active session.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
