Tag
critical
advisory
Comfast Router CVE-2026-15511: Remote OS Command Injection
1 rule 2 TTPs 1 CVEA critical remote OS command injection vulnerability, CVE-2026-15511, affects Comfast CF-WR631AX V3 WiFi routers, allowing unauthenticated remote attackers to execute arbitrary operating system commands by manipulating the 'filename' argument in the FastCGI Backend's file upload function, leading to full device compromise.
CF-WR631AX V3
vulnerability
command-injection
rce
firmware
router
fastcgi
1r
2t
1c
high
advisory
CVE-2026-55203 HAProxy Integer Overflow in FastCGI Handling
2 rules 3 TTPsAn integer overflow vulnerability (CVE-2026-55203) in HAProxy through version 3.4.0 allows malicious FastCGI backends to desynchronize the FCGI framing parser, leading to request routing errors, response smuggling, or memory safety issues.
HAProxy
vulnerability
fastcgi
integer-overflow
webserver
proxy
2r
3t