CVE Details
Basic Information
| Title | UTT HiPER 840G websWhiteList buffer overflow |
|---|---|
| Type | cve |
| Published | 2025-07-07T07:02:05.623Z |
| Modified | 2025-07-07T07:02:05.623Z |
Product Information
| Vendor | UTT |
|---|---|
| Product | HiPER 840G |
| Version | 3.1.1-190328 |
CVSS Information
| Base Score | 8.7 (HIGH) |
|---|---|
| Attack Vector | CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P |
AI Analysis
| AI Description | A critical buffer overflow vulnerability in UTT HiPER 840G allows remote attackers to exploit the addHostFilter argument in /goform/websWhiteList. The vendor has not responded to disclosure attempts. |
|---|---|
| AI Severity | Critical |
| AI Vendor | UTT |
| AI Product | HiPER 840G |
| AI Version | 3.1.1-190328 |
Affected Products
- UTT HiPER 840G 3.1.1-190328
Additional Information
| CWE List | CWE-120, CWE-119 |
|---|---|
| Source | VulDB |
Description
A vulnerability classified as critical was found in UTT HiPER 840G up to 3.1.1-190328. This vulnerability affects unknown code of the file /goform/websWhiteList. The manipulation of the argument addHostFilter leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.