---
id: CVE-2026-96257
title: A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4
summary: >-
  A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4. Affected by this
  issue is the function copy_msg_element of the component Device Discovery
  Service. Executing a manipulation can lead to stack-based buffer overflow. The
  attack…
severity: critical
cvss: 10
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H'
cwe:
  - CWE-119
  - CWE-121
vendor: Fast
product: FAC1203R Gigabit Edition
affected:
  - fac1203r_gigabit_edition 2.0.4
published: '2026-09-23'
updated: '2026-09-23'
sourceUpdated: '2026-09-23T15:17:31.920'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-96257'
references:
  - url: >-
      https://github.com/xiaobor123/vuls-find-VxWorks/tree/main/vul-find-FAST_FAC1203R-copy_msg_element
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2026-96257'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/901889'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/408707'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/408707/cti'
    label: cna@vuldb.com
tags:
  - nvd
  - cve.org
  - exploit-available
exploitAvailable: true
ssvc:
  exploitation: poc
  automatable: 'yes'
  technicalImpact: total
  timestamp: '2026-09-23T14:06:54.550015Z'
epss: 0.00584
epssPercentile: 0.45587
ingestedAt: '2026-09-23T03:16:01.007Z'
---

## Overview

A flaw has been found in Fast FAC1203R Gigabit Edition 2.0.4. Affected by this issue is the function copy_msg_element of the component Device Discovery Service. Executing a manipulation can lead to stack-based buffer overflow. The attack can be executed remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
