VYPR

HiPER 810G

by Utt

CVEs (26)

  • CVE-2025-6732HigJun 26, 2025
    risk 0.57cvss 8.8epss 0.01

    A vulnerability was found in UTT HiPER 840G up to 3.1.1-190328. It has been classified as critical. This affects the function strcpy of the file /goform/setSysAdm of the component API. The manipulation of the argument passwd1 leads to buffer overflow. It is possible to initiate…

  • CVE-2026-2080HigFeb 7, 2026
    risk 0.48cvss 7.2epss 0.09

    A vulnerability has been found in UTT HiPER 810 1.7.4-141218. This issue affects the function setSysAdm of the file /goform/formUser. The manipulation of the argument passwd1 leads to command injection. Remote exploitation of the attack is possible. The exploit has been…

  • CVE-2026-2980HigFeb 23, 2026
    risk 0.47cvss 7.2epss 0.01

    A vulnerability has been found in UTT HiPER 810G up to 1.7.7-1711. Impacted is the function strcpy of the file /goform/setSysAdm. The manipulation of the argument passwd1 leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public…

  • CVE-2026-2935HigFeb 22, 2026
    risk 0.47cvss 7.2epss 0.01

    A weakness has been identified in UTT HiPER 810G up to 1.7.7-171114. This issue affects the function strcpy of the file /goform/ConfigExceptMSN. Executing a manipulation of the argument remark can lead to buffer overflow. The attack can be executed remotely. The exploit has been…

  • CVE-2026-2118HigFeb 8, 2026
    risk 0.47cvss 7.2epss 0.04

    A vulnerability was determined in UTT HiPER 810 1.7.4-141218. The impacted element is the function sub_4407D4 of the file /goform/formReleaseConnect of the component rehttpd. Executing a manipulation of the argument Isp_Name can lead to command injection. The attack can be…

  • CVE-2026-2135MedFeb 8, 2026
    risk 0.41cvss 6.3epss 0.04

    A vulnerability was detected in UTT HiPER 810 1.7.4-141218. The impacted element is the function sub_43F020 of the file /goform/formPdbUpConfig. Performing a manipulation of the argument policyNames results in command injection. It is possible to initiate the attack remotely.…

Page 2 of 2