CVE-2025-7571
8.8UTT · HiPER 840G
A buffer overflow vulnerability in the UTT HiPER 840G router allows authenticated attackers to trigger a denial of service via the /goform/aspApBasicConfigUrcp endpoint.
Executive summary
A critical buffer overflow vulnerability in the UTT HiPER 840G router allows authenticated attackers to cause a denial of service, presenting a significant risk to network availability.
Vulnerability
This vulnerability is a buffer overflow (CWE-120) occurring within the /goform/aspApBasicConfigUrcp endpoint. An authenticated attacker can supply an excessively long string in the userName parameter to cause memory corruption and a denial of service.
Business impact
Successful exploitation of this vulnerability results in a denial of service, effectively taking the router offline. Given that this device is a network gateway, an outage causes immediate business disruption, loss of connectivity for internal systems, and potential downtime for critical services. With a CVSS score of 8.8, this flaw represents a high-severity risk that could be leveraged to cripple network infrastructure.
Remediation
Immediate Action: Contact the vendor immediately to obtain firmware updates, as there is currently no publicly confirmed patch available for this specific vulnerability.
Proactive Monitoring: Monitor network traffic and router logs for unauthorized attempts to access the /goform/aspApBasicConfigUrcp endpoint or unusual spikes in administrative authentication failures.
Compensating Controls: Restrict access to the router management interface to trusted internal IP addresses only, and utilize a Web Application Firewall or similar inspection tool to block requests containing abnormally long parameter strings.
Exploitation status
Public Exploit Available: Yes, a published proof-of-concept exists in a researcher's technical write-up.
Analyst recommendation
Due to the availability of a public proof-of-concept and the potential for total loss of network availability, this vulnerability must be treated with high urgency. Administrators should isolate the device from external exposure immediately and coordinate with UTT support to verify if a firmware update has been released for their specific deployment.
More UTT CVEs
Sources
Originally found and disclosed by yuhongxiang (VulDB User), per the CVE Program record.
- VDB-316269 | UTT HiPER 840G aspApBasicConfigUrcp buffer overflow Vulnerability database entry
- VDB-316269 | CTI Indicators (IOB, IOC, IOA)
- Submit #607747 | UTT HiPER 840G <=V3v3.1.1-190328 Buffer Overflow Third-party advisory
- Related
- Exploit / PoC