VYPR

Vendor CVEs

Utt

All CVEs

125 total · sorted by risk
  • CVE-2025-14140MedDec 6, 2025
    risk 0.42cvss 6.5epss 0.01

    A vulnerability was detected in UTT 进取 520W 1.7.7-180627. The affected element is the function strcpy of the file /goform/websHostFilter. Performing manipulation of the argument addHostFilter results in buffer overflow. The attack is possible to be carried out remotely. The…

  • CVE-2026-2135MedFeb 8, 2026
    risk 0.41cvss 6.3epss 0.04

    A vulnerability was detected in UTT HiPER 810 1.7.4-141218. The impacted element is the function sub_43F020 of the file /goform/formPdbUpConfig. Performing a manipulation of the argument policyNames results in command injection. It is possible to initiate the attack remotely.…

  • CVE-2025-14139MedDec 6, 2025
    risk 0.37cvss 5.7epss 0.01

    A security vulnerability has been detected in UTT 进取 520W 1.7.7-180627. Impacted is the function strcpy of the file /goform/formConfigDnsFilterGlobal. Such manipulation of the argument timeRangeName leads to buffer overflow. The exploit has been disclosed publicly and may be…

  • CVE-2026-11516MedJun 8, 2026
    risk 0.36cvss 5.5epss 0.00

    A vulnerability was found in UTT HiPER 2610G up to 3.0.0-171107. This affects the function strcpy of the file /goform/formNatStaticMap. Performing a manipulation of the argument NatBinds results in buffer overflow. The exploit has been made public and could be used.

  • CVE-2025-6097MedJun 16, 2025
    risk 0.34cvss 5.3epss 0.01

    A vulnerability was found in UTT 进取 750W up to 5.0 and classified as critical. Affected by this issue is the function formDefineManagement of the file /goform/setSysAdm of the component Administrator Password Handler. The manipulation of the argument passwd1 leads to…

  • CVE-2026-31066MedApr 6, 2026
    risk 0.29cvss 4.5epss 0.00

    UTT Aggressive HiPER 810G v3v1.7.7-171114 was discovered to contain a buffer overflow in the selDateType parameter of the formTaskEdit function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2026-31065MedApr 6, 2026
    risk 0.29cvss 4.5epss 0.00

    UTT Aggressive 520W v3v1.7.7-180627 was discovered to contain a buffer overflow in the addCommand parameter of the formConfigCliForEngineerOnly function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2026-31063MedApr 6, 2026
    risk 0.29cvss 4.5epss 0.00

    UTT Aggressive HiPER 1200GW v2.5.3-170306 was discovered to contain a buffer overflow in the pools parameter of the formArpBindConfig function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2026-31062MedApr 6, 2026
    risk 0.29cvss 4.5epss 0.00

    UTT Aggressive 520W v3v1.7.7-180627 was discovered to contain a buffer overflow in the filename parameter of the formFtpServerDirConfig function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2026-31061MedApr 6, 2026
    risk 0.29cvss 4.5epss 0.00

    UTT Aggressive HiPER 810G v3v1.7.7-171114 was discovered to contain a buffer overflow in the timestart parameter of the ConfigAdvideo function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2026-31060MedApr 6, 2026
    risk 0.29cvss 4.5epss 0.00

    UTT Aggressive HiPER 810G v3v1.7.7-171114 was discovered to contain a buffer overflow in the notes parameter of the formGroupConfig function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2026-31058MedApr 6, 2026
    risk 0.29cvss 4.5epss 0.00

    UTT Aggressive HiPER 1200GW v2.5.3-170306 was discovered to contain a buffer overflow in the timeRangeName parameter of the formConfigDnsFilterGlobal function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

  • CVE-2026-14721HigJul 5, 2026
    risk 0.00cvss 8.8epss 0.00

    A vulnerability has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535. This affects an unknown function of the file /goform/ConfigWirelessBase_5g of the component Web Endpoint. The manipulation of the argument ssid leads to stack-based buffer overflow. The attack is…

  • CVE-2026-52192HigJul 2, 2026
    risk 0.00cvss 7.5epss 0.00

    An issue in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_445C5C component

  • CVE-2026-52191HigJul 2, 2026
    risk 0.00cvss 7.5epss 0.00

    Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_444C8C component

  • CVE-2026-52189HigJul 2, 2026
    risk 0.00cvss 7.5epss 0.00

    Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_487330 component

  • CVE-2026-52188MedJul 2, 2026
    risk 0.00cvss 6.5epss 0.00

    Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead//sub_497498 component

  • CVE-2026-52187HigJul 2, 2026
    risk 0.00cvss 7.5epss 0.00

    Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_483ba0 component

  • CVE-2026-52190HigJul 1, 2026
    risk 0.00cvss 7.5epss 0.00

    Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_448384 component

  • CVE-2026-52186CriJul 1, 2026
    risk 0.00cvss 9.8epss 0.01

    SQL Injection vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to execute arbitrary code via the gohead/sub_463bbc component

  • CVE-2026-52198HigJun 30, 2026
    risk 0.00cvss 7.5epss 0.00

    Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_425994 component

  • CVE-2026-52197HigJun 30, 2026
    risk 0.00cvss 7.5epss 0.00

    An issue in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_44af70 component

  • CVE-2026-52195HigJun 30, 2026
    risk 0.00cvss 7.5epss 0.00

    Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_472f08 component

  • CVE-2026-52193HigJun 30, 2026
    risk 0.00cvss 7.5epss 0.00

    Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_447CAC component

  • CVE-2026-52196HigJun 30, 2026
    risk 0.00cvss 7.5epss 0.00

    Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_416f28 component

Page 3 of 3