CVE-2025-15089: UTT 进取 512W APSecurity strcpy buffer overflow
A vulnerability has been found in UTT 进取 512W up to 1.7.7-171114. This affects the function strcpy of the file /goform/APSecurity. The manipulation of the argument wepkey1 leads to buffer overflow. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15089?
CVE-2025-15089 is classified as a critical vulnerability due to the potential for remote exploitation leading to a buffer overflow.
How do I fix CVE-2025-15089?
To fix CVE-2025-15089, update the UTT 进取 512W firmware to version 1.7.8 or later.
What systems are affected by CVE-2025-15089?
CVE-2025-15089 affects the UTT 进取 512W devices running firmware versions up to and including 1.7.7-171114.
Can CVE-2025-15089 be exploited remotely?
Yes, CVE-2025-15089 can be exploited remotely due to its vulnerability in the /goform/APSecurity function.
What are the risks associated with CVE-2025-15089?
The risks of CVE-2025-15089 include unauthorized remote access, potential data loss, and system crashes due to buffer overflow.