Buffer Overflow Vulnerability in UTT HiPER 1250GW Device from UTT
CVE-2026-7419
Key Information:
- Vendor
Utt
- Status
- Vendor
- CVE Published:
- 29 April 2026
Badges
What is CVE-2026-7419?
A buffer overflow vulnerability has been identified in the UTT HiPER 1250GW device, specifically within the strcpy function in the route/goform/formTaskEdit_ap file. This issue arises from improper handling of the Profile argument, allowing for remote exploitation. An attacker could leverage this vulnerability if the device runs versions up to 3.2.7-210907-180535. The availability of an exploit in the public domain raises significant security concerns, necessitating prompt action to mitigate potential threats.
Affected Version(s)
HiPER 1250GW 3.2.7-210907-180535
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
