Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
UTT HiPER 1250GW Web Management formGroupConfig strcpy stack-based overflow
Vulnerability Description
A flaw has been found in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this issue is the function strcpy of the file /goform/formGroupConfig of the component Web Management Interface. Executing a manipulation of the argument Profile can lead to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been published and may be used.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
栈缓冲区溢出
Vulnerability Title
UTT HiPER 1250GW 安全漏洞
Vulnerability Description
UTT HiPER 1250GW是中国艾泰(UTT)公司的一款无线网关设备。 UTT HiPER 1250GW 3.2.7-210907-180535及之前版本存在安全漏洞,该漏洞源于Web Management Interface组件/goform/formGroupConfig文件中strcpy函数对参数Profile的操作导致栈缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A