CNNVD-202601-937 Information

CNNVD ID

CNNVD-202601-937

CVE-2025-15460

  • CNNVD Published: 2026-01-05

Description (Chinese)

UTT 520W是中国艾泰(UTT)公司的一款无线路由器。 UTT 520W 1.7.7-180627版本存在安全漏洞,该漏洞源于对文件/goform/formPptpClientConfig中函数strcpy的参数EncryptionMode的错误操作,可能导致缓冲区溢出。

Description (English)

UTT 520W is a wireless router of the Chinese company UTT. There is a security loophole in UTT 520W 1.7.7-180627, which stems from the error of the parameter EncryptionMode for function strcpy in document/goform/formPptpClientConfig, which could lead to a spill out of the buffer zone.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

艾泰

Published

2026-01-05

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.339496 https://vuldb.com/?submit.725817 https://vuldb.com/?id.339496 https://github.com/cymiao1978/cve/blob/main/new/23.md#poc https://access.redhat.com/security/cve/cve-2025-15460

Share on: