CVE-2025-14534: UTT 进取 512W Endpoint formNatStaticMap strcpy buffer overflow
A vulnerability was determined in UTT 进取 512W up to 3.1.7.7-171114. This impacts the function strcpy of the file /goform/formNatStaticMap of the component Endpoint. Executing manipulation of the argument NatBind can lead to buffer overflow. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14534?
CVE-2025-14534 has a high severity level due to its capability to cause a buffer overflow.
How do I fix CVE-2025-14534?
To fix CVE-2025-14534, you should update the UTT 进取 512W software to version 3.1.7.8 or later.
Who is affected by CVE-2025-14534?
Users of UTT 进取 512W versions up to and including 3.1.7.7-171114 are affected by CVE-2025-14534.
Can CVE-2025-14534 be exploited remotely?
Yes, CVE-2025-14534 can be exploited remotely by manipulating the NatBind argument.
What component is impacted by CVE-2025-14534?
CVE-2025-14534 impacts the strcpy function in the /goform/formNatStaticMap of the Endpoint component.