CVE-2025-15431: UTT 进取 512W formFtpServerDirConfig strcpy buffer overflow
A flaw has been found in UTT 进取 512W 1.7.7-171114. This affects the function strcpy of the file /goform/formFtpServerDirConfig. Executing a manipulation of the argument filename can lead to buffer overflow. The attack can be launched remotely. The exploit has been published and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15431?
CVE-2025-15431 is classified as a critical vulnerability due to its potential to allow remote exploitation through buffer overflow.
How do I fix CVE-2025-15431?
To fix CVE-2025-15431, update the UTT 进取 512W to the latest version that addresses this buffer overflow issue.
What systems are affected by CVE-2025-15431?
CVE-2025-15431 affects the UTT 进取 512W running version 1.7.7-171114.
Can CVE-2025-15431 be exploited remotely?
Yes, CVE-2025-15431 can be exploited remotely, making it a significant security risk.
What type of attack does CVE-2025-15431 facilitate?
CVE-2025-15431 facilitates a buffer overflow attack by manipulating the argument in the strcpy function.