CVE 9.3 CRITICAL

UTT 进取 512W formConfigFastDirectionW strcpy buffer overflow_CVE-2025-14535

9.3 / 10
CRITICAL
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P

Description

A vulnerability was identified in UTT 进取 512W up to 3.1.7.7-171114. Affected is the function strcpy of the file /goform/formConfigFastDirectionW. The manipulation of the argument ssid leads to buffer overflow. The attack may be initiated remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

AI Analysis

Buffer overflow vulnerability in the strcpy function of the /goform/formConfigFastDirectionW file, allowing remote attackers to exploit the vulnerability via the ssid argument.

Basic Information

ID CVE-2025-14535
Source VulDB
Published Dec 11, 2025 at 19:32

Affected Product

Vendor UTT
Product 进取 512W
Version 3.1.7.7-171114
Affected Versions UTT 进取 512W 3.1.7.7-171114

CWE Classification

AI Assessment

AI Score 9.3 / 10
AI Severity Critical
Vendor UTT
Product 进取 512W
Version 3.1.7.7-171114

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.