A stack-based buffer overflow vulnerability has been identified in Comfast CF-N1-S version 2.6.0.1. The flaw exists in the function sub_44B50C within the Web Management component, specifically via the /cgi-bin/mbox-config?method=SET§ion=ptest_channel endpoint. An attacker can exploit this vulnerability remotely without requiring physical access to the device. The vulnerability allows manipulation of input data leading to a stack-based buffer overflow condition. A public exploit has already been released, increasing the risk of active exploitation. This affects network/IoT devices running the affected firmware version. The vulnerability has been assigned CVE-2026-77148 and is tracked by NVD and VulDB. Users of the Comfast CF-N1-S 2.6.0.1 firmware should apply patches or mitigations as soon as they become available.