8.7
/ 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was found in UTT 进取 512W up to 1.7.7-171114. This vulnerability affects the function strcpy of the file /goform/formConfigNoticeConfig. The manipulation of the argument timestart results in buffer overflow. The attack may be performed from remote. The exploit has been made public and could be used.
AI Analysis
Buffer overflow vulnerability in UTT 进取 512W's formConfigNoticeConfig function due to the manipulation of the timestart argument, allowing remote attacks.
Basic Information
ID
CVE-2025-15090
Source
VulDB
Published
Dec 25, 2025 at 23:02
Affected Product
Vendor
UTT
Product
进取 512W
Version
1.7.7-171114
Affected Versions
UTT 进取 512W 1.7.7-171114
CWE Classification
AI Assessment
AI Score
8.7 / 10
AI Severity
High
Vendor
UTT
Product
进取 512W
Version
1.7.7-171114