PT-2026-1048 · Unknown · Utt 进取 512W

Lena-Lyy02

·

Published

2025-12-23

·

Updated

2026-01-07

·

CVE-2025-15429

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions UTT 进取 512W version 1.7.7-171114
Description A security issue exists in UTT 进取 512W 1.7.7-171114. The strcpy function within the /goform/formConfigCliForEngineerOnly file is susceptible to a buffer overflow when the addCommand argument is manipulated. This allows for remote attacks. The exploit for this issue has been publicly disclosed.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2026-00363
CVE-2025-15429

Affected Products

Utt 进取 512W