Description
A security flaw has been discovered in UTT HiPER 1250GW up to 3.2.7-210907-180535. Impacted is the function strcpy of the file route/goform/ConfigAdvideo. The manipulation of the argument Profile results in buffer overflow. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.
Problem types
Product status
Timeline
| 2026-04-29: | Advisory disclosed |
| 2026-04-29: | VulDB entry created |
| 2026-04-29: | VulDB entry last update |
Credits
maple_s (VulDB User)
References
vuldb.com/vuln/360157 (VDB-360157 | UTT HiPER 1250GW ConfigAdvideo strcpy buffer overflow)
vuldb.com/vuln/360157/cti (VDB-360157 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/submit/803997 (Submit #803997 | UTT HiPER 1250GW <=v3.2.7-210907-180535 Buffer Overflow)
github.com/kirlic123/IOTvulner/blob/main/4035/5/5.md