Description
A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. This issue affects the function strcpy of the file /goform/formConfigDnsFilterGlobal of the component Parameter Handler. Such manipulation of the argument GroupName leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.
Problem types
Product status
Timeline
| 2026-03-25: | Advisory disclosed |
| 2026-03-25: | VulDB entry created |
| 2026-03-25: | VulDB entry last update |
Credits
maple_s (VulDB User)
References
vuldb.com/?id.353193 (VDB-353193 | UTT HiPER 1250GW Parameter formConfigDnsFilterGlobal strcpy buffer overflow)
vuldb.com/?ctiid.353193 (VDB-353193 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/?submit.776230 (Submit #776230 | UTT HiPER 1250GW <=v3.2.7-210907-180535 Buffer Overflow)
github.com/kirlic123/IOTvulner/blob/main/309-1/5.md