PT-2025-38646 · Unknown · Utt 1200Gw
Cymiao
·
Published
2025-09-20
·
Updated
2025-09-26
·
CVE-2025-10757
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
UTT 1200GW versions prior to 3.0.0-170831
Description
A buffer overflow weakness exists in UTT 1200GW. The issue is located in an unknown function within the
/goform/formConfigDnsFilterGlobal file. Manipulation of the GroupName argument triggers the overflow. This can be exploited remotely. The exploit is publicly available, and the vendor has not responded to reports about this issue.Recommendations
Update UTT 1200GW to a version prior to 3.0.0-170831.
As a temporary workaround, restrict access to the
/goform/formConfigDnsFilterGlobal file.
Avoid using the GroupName argument in the affected file until the issue is resolved.Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Utt 1200Gw