CVE-2025-14141: UTT 进取 520W formArpBindConfig strcpy buffer overflow
A flaw has been found in UTT 进取 520W 1.7.7-180627. The impacted element is the function strcpy of the file /goform/formArpBindConfig. Executing manipulation of the argument pools can lead to buffer overflow. The attack may be performed from remote. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14141?
CVE-2025-14141 is considered high severity due to the potential for remote exploitation that leads to buffer overflow.
How do I fix CVE-2025-14141?
To fix CVE-2025-14141, you should apply the latest firmware update provided by UTT for the UTT 进取 520W device.
What is the impact of CVE-2025-14141?
The impact of CVE-2025-14141 includes the ability for attackers to execute arbitrary code remotely through a buffer overflow.
Which software versions are affected by CVE-2025-14141?
CVE-2025-14141 affects UTT 进取 520W running version 1.7.7-180627.
Is CVE-2025-14141 easy to exploit?
Yes, CVE-2025-14141 is relatively easy to exploit, allowing attackers to manipulate argument pools to trigger the buffer overflow.