OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-101039

CRITICAL · CVSS 10 EPSS 0.74% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-28 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

A critical stack-based buffer overflow vulnerability exists in the copy_msg_element function of the devdiscover Service in FAST FAC1900R version 20190827_2.0.2, allowing remote attackers to execute arbitrary code. Organizations using this affected product should prioritize immediate remediation, as the exploit is publicly available and poses a significant risk to system integrity and security. Given the severity of the vulnerability and the lack of vendor response, urgent action is recommended to mitigate potential attacks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit
GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-101039
Severity
CRITICAL
CVSS
10
EPSS
0.74%

Original NVD Description

A vulnerability was identified in FAST FAC1900R 20190827_2.0.2. Affected by this issue is the function copy_msg_element of the component devdiscover Service. Such manipulation leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.