8.7
/ 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was determined in UTT 进取 512W up to 1.7.7-171114. This issue affects the function strcpy of the file /goform/formPictureUrl. This manipulation of the argument importpictureurl causes buffer overflow. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
AI Analysis
Buffer overflow vulnerability in UTT 进取 512W up to 1.7.7-171114, allowing remote attackers to initiate an attack via the importpictureurl argument in the /goform/formPictureUrl function.
Basic Information
ID
CVE-2025-15091
Source
VulDB
Published
Dec 25, 2025 at 23:32
Affected Product
Vendor
UTT
Product
进取 512W
Version
1.7.7-171114
Affected Versions
UTT 进取 512W 1.7.7-171114
CWE Classification
AI Assessment
AI Score
8.7 / 10
AI Severity
High
Vendor
UTT
Product
进取 512W
Version
1.7.7-171114