PT-2025-36968 · Unknown · Utt 1200Gw
Qmssdxn
·
Published
2025-09-09
·
Updated
2025-09-09
·
CVE-2025-10169
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
UTT 1200GW versions up to 3.0.0-170831
Description:
A buffer overflow weakness exists in UTT 1200GW up to version 3.0.0-170831. The issue is related to the manipulation of the
ssid argument within the /goform/ConfigWirelessBase file. This manipulation can lead to a buffer overflow, and the attack can be initiated remotely. The exploit has been publicly released. The vendor was notified but did not respond.Recommendations:
Versions prior to 3.0.0-170831 should be updated.
As a temporary workaround, restrict access to the
/goform/ConfigWirelessBase file to minimize the risk of exploitation.
Avoid using the ssid parameter in the /goform/ConfigWirelessBase file until the issue is resolved.Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Utt 1200Gw