Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
UTT HiPER 1200GW Web Management setSysAdm strcpy buffer overflow
Vulnerability Description
A security flaw has been discovered in UTT HiPER 1200GW up to 2.5.3-170306. This impacts the function strcpy of the file /goform/setSysAdm of the component Web Management Interface. The manipulation of the argument sysAdmUser/sysAdmPass results in buffer overflow. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
未进行输入大小检查的缓冲区拷贝(传统缓冲区溢出)
Vulnerability Title
UTT HiPER 1200GW 安全漏洞
Vulnerability Description
UTT HiPER 1200GW是中国艾泰(UTT)公司的一款无线网关设备。 UTT HiPER 1200GW 2.5.3-170306及之前版本存在安全漏洞,该漏洞源于Web Management Interface组件/goform/setSysAdm文件中strcpy函数对参数sysAdmUser/sysAdmPass的操作导致缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A