CNNVD-202512-4807 Information

CNNVD ID

CNNVD-202512-4807

CVE-2025-15092

  • CNNVD Published: 2025-12-26

Description (Chinese)

UTT 512W是中国艾泰(UTT)公司的一款无线路由器。 UTT 512W 1.7.7-171114及之前版本存在安全漏洞,该漏洞源于文件/goform/ConfigExceptMSN中strcpy函数对参数remark的错误操作,可能导致缓冲区溢出。

Description (English)

UTT 512W is a wireless router of the Chinese company UTT. There is a security loophole in UTT 512W 1.7.7-171114 and earlier versions, which stems from the error of the strcpy function in file/goform/ConfigExceptMSN to the parameter remark, which may result in a spill over the buffer zone.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

艾泰

Published

2025-12-26

Last Modified

2026-02-24

References

https://github.com/cymiao1978/cve/blob/main/new/17.md https://github.com/cymiao1978/cve/blob/main/new/17.md#poc https://vuldb.com/?ctiid.338421 https://vuldb.com/?id.338421 https://vuldb.com/?submit.708351 https://access.redhat.com/security/cve/cve-2025-15092

Share on: