Description
A vulnerability was determined in UTT 进取 512W up to 1.7.7-171114. This issue affects the function strcpy of the file /goform/formPictureUrl. This manipulation of the argument importpictureurl causes buffer overflow. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
Problem types
Product status
Timeline
| 2025-12-25: | Advisory disclosed |
| 2025-12-25: | VulDB entry created |
| 2025-12-25: | VulDB entry last update |
Credits
cymiao (VulDB User)
References
github.com/cymiao1978/cve/blob/main/new/16.md
vuldb.com/?id.338420 (VDB-338420 | UTT 进取 512W formPictureUrl strcpy buffer overflow)
vuldb.com/?ctiid.338420 (VDB-338420 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.708350 (Submit #708350 | UTT 进取 512W v3v1.7.7-171114 Buffer Overflow)
github.com/cymiao1978/cve/blob/main/new/16.md
github.com/cymiao1978/cve/blob/main/new/16.md
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.