CVE-2025-6732: UTT HiPER 840G API setSysAdm strcpy buffer overflow
A vulnerability was found in UTT HiPER 840G up to 3.1.1-190328. It has been classified as critical. This affects the function strcpy of the file /goform/setSysAdm of the component API. The manipulation of the argument passwd1 leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6732?
CVE-2025-6732 has been classified as critical.
How does CVE-2025-6732 affect UTT HiPER 840G?
CVE-2025-6732 affects the strcpy function in the /goform/setSysAdm file, leading to a potential buffer overflow.
What versions of UTT HiPER 840G are affected by CVE-2025-6732?
UTT HiPER 840G versions up to and including 3.1.1-190328 are affected by CVE-2025-6732.
How do I fix CVE-2025-6732?
To fix CVE-2025-6732, update the software to the latest version provided by UTT that patches this vulnerability.
What potential impact does CVE-2025-6732 have on systems?
CVE-2025-6732 can lead to unauthorized access and potential system compromise due to the buffer overflow vulnerability.