UTT HiPER 810是中国艾泰(UTT)公司的一款智能宽带路由器。 UTT HiPER 810 1.7.4-141218版本存在命令注入漏洞,该漏洞源于对组件rehttpd中文件/goform/formReleaseConnect内函数sub_4407D4的参数Isp_Name的错误操作,可能导致命令注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-2188 | 7.2 HIGH | UTT 进取 521G formPdbUpConfig sub_446B18 os command injection |
| CVE-2026-2182 | 7.2 HIGH | UTT 进取 521G setSysAdm doSystem command injection |
| CVE-2026-2135 | 6.3 MEDIUM | UTT HiPER 810 formPdbUpConfig sub_43F020 command injection |
No comments yet