CVE-2026-101354

CRITICAL CVSS 4.0: 8.6 EPSS 0.38%
Updated Sep 29, 2026
Fast
Parameter Value
CVSS 8.6 (CRITICAL)
Type CWE-119 (Buffer Overflow), CWE-121 (Stack-based Buffer Overflow)
Vendor Fast
Public PoC No

A security flaw has been discovered in FAST FAC1203R 20200116_2.0.4. The affected element is the function _tWlanTask of the component MmtAtePrase Parser. Performing a manipulation results in stack-based buffer overflow.

The attacker must have access to the local network to execute the attack. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

Attack Parameters

Attack Vector
Adjacent
Requires local network access
Attack Complexity
Low
Easy to exploit
Attack Requirements
None
No additional conditions
Privileges Required
None
No privileges needed
User Interaction
None
No user interaction needed

Impact Assessment

Confidentiality
High
Complete data leak
Integrity
High
Complete data modification
Availability
High
Complete denial of service

CVSS Vector v4.0

Vulnerable Products

fast:fac1203r