CVE-2025-15092: UTT 进取 512W ConfigExceptMSN strcpy buffer overflow
A vulnerability was identified in UTT 进取 512W up to 1.7.7-171114. Impacted is the function strcpy of the file /goform/ConfigExceptMSN. Such manipulation of the argument remark leads to buffer overflow. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15092?
CVE-2025-15092 has been categorized as critical due to the potential for remote code execution through buffer overflow.
How do I fix CVE-2025-15092?
To mitigate CVE-2025-15092, update the UTT 进取 512W to a version later than 1.7.7-171114 that includes a patch for this vulnerability.
Who is affected by CVE-2025-15092?
The vulnerability affects UTT 进取 512W devices running versions up to and including 1.7.7-171114.
Can CVE-2025-15092 be exploited remotely?
Yes, CVE-2025-15092 can be exploited remotely due to the nature of the buffer overflow in the function strcpy.
What type of vulnerability is CVE-2025-15092?
CVE-2025-15092 is a buffer overflow vulnerability that occurs during argument manipulation in the strcpy function.