Description
A vulnerability was determined in UTT HiPER 2610G up to 3.0.0-171107. This impacts the function strcpy of the file /goform/formConfigDnsFilterGlobal. Executing a manipulation of the argument GroupName can lead to buffer overflow. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
Problem types
Product status
Timeline
| 2026-06-07: | Advisory disclosed |
| 2026-06-07: | VulDB entry created |
| 2026-06-07: | VulDB entry last update |
Credits
liwenqing (VulDB User)
References
vuldb.com/submit/836278
vuldb.com/vuln/369137 (VDB-369137 | UTT HiPER 2610G formConfigDnsFilterGlobal strcpy buffer overflow)
vuldb.com/vuln/369137/cti (VDB-369137 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/cve/CVE-2026-11517 (CVE-2026-11517 | CVE Analysis and Report)
vuldb.com/submit/836278 (Submit #836278 | UTT HiPER 2610G <=v3.0.0-171107 Buffer Overflow)
github.com/HungryGoogle/log_attack/tree/main/index3