CVE-2025-6733: UTT HiPER 840G API formConfigDnsFilterGlobal sub_416928 buffer overflow
A vulnerability was found in UTT HiPER 840G up to 3.1.1-190328. It has been declared as critical. This vulnerability affects the function sub416928 of the file /goform/formConfigDnsFilterGlobal of the component API. The manipulation of the argument GroupName leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6733?
CVE-2025-6733 is classified as a critical severity vulnerability.
How do I fix CVE-2025-6733?
To mitigate CVE-2025-6733, update UTT HiPER 840G to a version beyond 3.1.1-190328.
What component is affected by CVE-2025-6733?
CVE-2025-6733 affects the API component, specifically the function sub_416928 in the file /goform/formConfigDnsFilterGlobal.
What type of vulnerability is CVE-2025-6733?
CVE-2025-6733 is a buffer overflow vulnerability caused by improper handling of the GroupName argument.
Which software versions are vulnerable to CVE-2025-6733?
UTT HiPER 840G versions up to and including 3.1.1-190328 are affected by CVE-2025-6733.