CVE-2025-7570

8.8

UTT · HiPER 840G

A buffer overflow vulnerability in the UTT HiPER 840G router allows remote attackers to cause a denial of service via a crafted request to the aspRemoteApConfTempSend endpoint.

Executive summary

A buffer overflow vulnerability in UTT HiPER 840G routers allows authenticated attackers to execute a denial of service, posing a significant risk to network availability.

Vulnerability

The device is susceptible to a buffer overflow via the remoteSrcTemp parameter within the /goform/aspRemoteApConfTempSend endpoint. Successful exploitation requires the attacker to be authenticated with administrative privileges, as evidenced by the Digest authentication headers required in the proof of concept.

Business impact

The vulnerability poses a severe risk to business continuity by allowing for a complete denial of service of the networking hardware. Given the CVSS score of 8.8, this flaw represents a high-impact risk that could lead to extended network downtime, potentially disrupting all services relying on the affected router.

Remediation

Immediate Action: As no vendor patch is currently available, administrators should restrict management access to the router to trusted internal IP addresses only.

Proactive Monitoring: Monitor device logs for anomalous POST requests directed at the /goform/aspRemoteApConfTempSend endpoint and watch for unexpected device reboots or service outages.

Compensating Controls: Utilize a Web Application Firewall or network access control list (ACL) to block or inspect traffic attempting to reach the administrative management interface from untrusted sources.

Exploitation status

Public Exploit Available: Yes, a public proof of concept is available via the researcher write-up on GitHub.

Analyst recommendation

Due to the lack of a vendor-supplied patch and the public availability of exploit code, this vulnerability presents a credible threat. Administrators are strongly urged to isolate the management interface of the UTT HiPER 840G from the public internet immediately to mitigate the risk of unauthorized service disruption.

More UTT CVEs

Sources

Originally found and disclosed by yuhongxiang (VulDB User), per the CVE Program record.