8.7
/ 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P
Description
A vulnerability has been found in UTT 进取 520W 1.7.7-180627. The affected element is the function strcpy of the file /goform/formPolicyRouteConf. Such manipulation of the argument GroupName leads to buffer overflow. The attack can be executed remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
AI Analysis
Buffer overflow vulnerability in UTT 进取 520W 1.7.7-180627 via manipulation of the GroupName argument in the strcpy function of the /goform/formPolicyRouteConf file, allowing remote exploitation.
Basic Information
ID
CVE-2026-2070
Source
VulDB
Published
Feb 6, 2026 at 22:32
Affected Product
Vendor
UTT
Product
进取 520W
Version
1.7.7-180627
Affected Versions
UTT 进取 520W 1.7.7-180627
CWE Classification
AI Assessment
AI Score
8.7 / 10
AI Severity
High
Vendor
UTT
Product
进取 520W
Version
1.7.7-180627