{"id":"CVE-2026-101038","title":"FAST FAC1200R MmtAtePrase stack-based overflow","summary":"A vulnerability was determined in FAST FAC1200R 5.0_20201119_1.0.2. Affected by this vulnerability is the function MmtAtePrase of the component MmtAtePrase Parser. This manipulation causes stack-based buffer overflow. Remote exploitation…","severity":"critical","cvss":9.9,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:P/RL:X/RC:R","cvssSource":"cna","cwe":["CWE-121","CWE-119"],"vendor":"FAST","product":"FAC1200R","affected":["FAC1200R 5.0_20201119_1.0.2"],"ssvc":{"exploitation":"poc","automatable":"no","technicalImpact":"total","timestamp":"2026-09-28T10:53:19.744257Z"},"exploitAvailable":true,"published":"2026-09-28","updated":"2026-09-28","sourceUpdated":"2026-09-28T10:53:39.470Z","source":"CVEORG","sourceUrl":"https://www.cve.org/CVERecord?id=CVE-2026-101038","references":[{"url":"https://vuldb.com/vuln/410906","label":"VDB-410906 | FAST FAC1200R MmtAtePrase stack-based overflow"},{"url":"https://vuldb.com/vuln/410906/cti","label":"VDB-410906 | CTI Indicators (IOB, IOC, IOA)"},{"url":"https://vuldb.com/cve/CVE-2026-101038","label":"CVE-2026-101038 | CVE Analysis and Report"},{"url":"https://vuldb.com/submit/927237","label":"Submit #927237 | FAST FAC1200R V5.0_20201119_1.0.2 Stack-based Buffer Overflow"},{"url":"https://github.com/xiaobor123/vuls-find-VxWorks/tree/main/vul-find-FAST_FAC1200R-twlantask-MmtAtePrase-stack-overflow(1)/vul-find-FAST_FAC1200R-twlantask-MmtAtePrase-stack-overflow"}],"tags":["cve.org","exploit-available"],"ingestedAt":"2026-09-28T11:08:06.671Z","slug":"CVE-2026-101038","body":"## Overview\n\nA vulnerability was determined in FAST FAC1200R 5.0_20201119_1.0.2. Affected by this vulnerability is the function MmtAtePrase of the component MmtAtePrase Parser. This manipulation causes stack-based buffer overflow. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.\n\n## Affected\n\n- `FAC1200R 5.0_20201119_1.0.2`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"abyssal","depthScore":66,"depthScoreParts":{"impact":54.5,"likelihood":0,"exploitation":12,"ransomware":0},"changes":[]}