CVE-2026-1140: UTT 进取 520W ConfigExceptAli strcpy buffer overflow
A vulnerability was found in UTT 进取 520W 1.7.7-180627. This issue affects the function strcpy of the file /goform/ConfigExceptAli. The manipulation results in buffer overflow. It is possible to launch the attack remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1140?
CVE-2026-1140 has a high severity due to its potential for remote exploitation via a buffer overflow.
What systems are affected by CVE-2026-1140?
CVE-2026-1140 affects the UTT 进取 520W version 1.7.7-180627.
How do I fix CVE-2026-1140?
To fix CVE-2026-1140, update the UTT 进取 520W firmware to the latest version provided by the vendor.
Can CVE-2026-1140 be exploited remotely?
Yes, CVE-2026-1140 can be exploited remotely due to its buffer overflow vulnerability.
What is the impact of exploiting CVE-2026-1140?
Exploiting CVE-2026-1140 can lead to unauthorized access and potential system control.