CVE-2026-9631: UTT HiPER 1250GW Web Management formConfigFastDirectionW strcpy stack-based overflow
A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/formConfigFastDirectionW of the component Web Management Interface. Performing a manipulation of the argument Profile results in stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit is now public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-9631?
The severity of CVE-2026-9631 is rated high with a score of 8.8.
How do I fix CVE-2026-9631?
To mitigate CVE-2026-9631, update the UTT HiPER 1250GW software to version 3.2.7-210907-180535 or later.
What type of vulnerability is CVE-2026-9631?
CVE-2026-9631 is a stack-based buffer overflow vulnerability.
Which component is affected by CVE-2026-9631?
The vulnerability affects the Web Management Interface of the UTT HiPER 1250GW.
What can be the impact of CVE-2026-9631?
Exploitation of CVE-2026-9631 may lead to arbitrary code execution or denial of service due to the stack-based overflow.