Buffer Overflow Vulnerability in UTT ่ฟๅ 512W Product
CVE-2025-15430
Key Information:
- Vendor
Utt
- Status
- Vendor
- CVE Published:
- 2 January 2026
Badges
What is CVE-2025-15430?
A vulnerability has been identified in the UTT ่ฟๅ 512W firmware version 1.7.7-171114, which affects the strcpy function found in the /goform/formFtpServerShareDirSelcet file. A remote attacker could exploit this vulnerability by manipulating the oldfilename argument, leading to a buffer overflow condition. Since the exploit is publicly available, it poses a significant risk to users. Despite early notification to the vendor, no response was received regarding this critical issue.
Affected Version(s)
่ฟๅ 512W 1.7.7-171114
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
