Description
A security flaw has been discovered in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/setSysAdm of the component Web Management Interface. The manipulation of the argument sysAdmUser/sysAdmPass results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.
Problem types
Product status
Timeline
| 2026-05-26: | Advisory disclosed |
| 2026-05-26: | VulDB entry created |
| 2026-05-26: | VulDB entry last update |
Credits
zhouguobing (VulDB User)
References
vuldb.com/vuln/365683 (VDB-365683 | UTT HiPER 1200GW Web Management setSysAdm strcpy buffer overflow)
vuldb.com/vuln/365683/cti (VDB-365683 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/submit/818374 (Submit #818374 | UTT HiPER 1200GW v2.5.3-170306 Buffer Overflow)
github.com/zhouguobing-maker/cve/blob/main/9.md