UTT
UTT 520w Firmware: vulnerabilidades y CVE
UTT 520w Firmware tiene 26 vulnerabilidades publicadas, 26 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE26
Últimos 12 meses26
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-31067 | Media (6.8) | 0.58% | — | 6 abr 2026 | A remote command execution (RCE) vulnerability in the /goform/formReleaseConnect component of UTT Aggressive 520W v3v1.7.7-180627 allows attackers to execute arbitrary commands via a crafted string. |
| CVE-2026-31065 | Media (4.5) | 0.27% | — | 6 abr 2026 | UTT Aggressive 520W v3v1.7.7-180627 was discovered to contain a buffer overflow in the addCommand parameter of the formConfigCliForEngineerOnly function. This vulnerability allows attackers to cause a Denial of Service… |
| CVE-2026-31062 | Media (4.5) | 0.27% | — | 6 abr 2026 | UTT Aggressive 520W v3v1.7.7-180627 was discovered to contain a buffer overflow in the filename parameter of the formFtpServerDirConfig function. This vulnerability allows attackers to cause a Denial of Service (DoS)… |
| CVE-2026-31059 | Crítica (9.8) | 1.1% | — | 6 abr 2026 | A remote command execution (RCE) vulnerability in the /goform/formDia component of UTT Aggressive HiPER 520W v3v1.7.7-180627 allows attackers to execute arbitrary commands via a crafted string. |
| CVE-2026-2071 | Alta (7.4) | 0.69% | — | 7 feb 2026 | A vulnerability was found in UTT 进取 520W 1.7.7-180627. The impacted element is the function strcpy of the file /goform/formP2PLimitConfig. Performing a manipulation of the argument except results in buffer overflow. The… |
| CVE-2026-2070 | Alta (7.4) | 0.69% | — | 6 feb 2026 | A vulnerability has been found in UTT 进取 520W 1.7.7-180627. The affected element is the function strcpy of the file /goform/formPolicyRouteConf. Such manipulation of the argument GroupName leads to buffer overflow. The… |
| CVE-2026-2068 | Alta (7.4) | 0.71% | — | 6 feb 2026 | A vulnerability was detected in UTT 进取 520W 1.7.7-180627. This issue affects the function strcpy of the file /goform/formSyslogConf. The manipulation of the argument ServerIp results in buffer overflow. The attack may… |
| CVE-2026-2067 | Alta (7.4) | 0.89% | — | 6 feb 2026 | A security vulnerability has been detected in UTT 进取 520W 1.7.7-180627. This vulnerability affects the function strcpy of the file /goform/formTimeGroupConfig. The manipulation of the argument year1 leads to buffer… |
| CVE-2026-2066 | Alta (7.4) | 0.69% | — | 6 feb 2026 | A weakness has been identified in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the file /goform/formIpGroupConfig. Executing a manipulation of the argument groupName can lead to buffer overflow. The… |
| CVE-2026-1140 | Alta (7.4) | 0.76% | — | 19 ene 2026 | A vulnerability was found in UTT 进取 520W 1.7.7-180627. This issue affects the function strcpy of the file /goform/ConfigExceptAli. The manipulation results in buffer overflow. It is possible to launch the attack… |
| CVE-2026-1139 | Alta (7.4) | 0.98% | — | 19 ene 2026 | A vulnerability has been found in UTT 进取 520W 1.7.7-180627. This vulnerability affects the function strcpy of the file /goform/ConfigExceptMSN. The manipulation leads to buffer overflow. It is possible to initiate the… |
| CVE-2026-1138 | Alta (7.4) | 0.98% | — | 19 ene 2026 | A flaw has been found in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the file /goform/ConfigExceptQQ. Executing a manipulation can lead to buffer overflow. The attack may be performed from remote. The… |
| CVE-2026-1137 | Alta (7.4) | 0.97% | — | 19 ene 2026 | A vulnerability was detected in UTT 进取 520W 1.7.7-180627. Affected by this issue is the function strcpy of the file /goform/formWebAuthGlobalConfig. Performing a manipulation results in buffer overflow. The attack is… |
| CVE-2026-0841 | Alta (7.4) | 3.9% | — | 11 ene 2026 | A vulnerability was detected in UTT 进取 520W 1.7.7-180627. Affected by this issue is the function strcpy of the file /goform/formPictureUrl. The manipulation of the argument importpictureurl results in buffer overflow.… |
| CVE-2026-0840 | Alta (7.4) | 4.1% | — | 11 ene 2026 | A security vulnerability has been detected in UTT 进取 520W 1.7.7-180627. Affected by this vulnerability is the function strcpy of the file /goform/formConfigNoticeConfig. The manipulation of the argument timestart leads… |
| CVE-2026-0839 | Alta (7.4) | 1.1% | — | 11 ene 2026 | A weakness has been identified in UTT 进取 520W 1.7.7-180627. Affected is the function strcpy of the file /goform/APSecurity. Executing a manipulation of the argument wepkey1 can lead to buffer overflow. The attack may be… |
| CVE-2026-0838 | Alta (7.4) | 3.9% | — | 11 ene 2026 | A security flaw has been discovered in UTT 进取 520W 1.7.7-180627. This impacts the function strcpy of the file /goform/ConfigWirelessBase. Performing a manipulation of the argument ssid results in buffer overflow. The… |
| CVE-2026-0837 | Alta (7.4) | 3.9% | — | 11 ene 2026 | A vulnerability was identified in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the file /goform/formFireWall. Such manipulation of the argument GroupName leads to buffer overflow. The attack can be… |
| CVE-2026-0836 | Alta (7.4) | 0.86% | — | 11 ene 2026 | A vulnerability was determined in UTT 进取 520W 1.7.7-180627. The impacted element is the function strcpy of the file /goform/formConfigFastDirectionW. This manipulation of the argument ssid causes buffer overflow. Remote… |
| CVE-2025-15462 | Alta (7.4) | 0.93% | — | 5 ene 2026 | A vulnerability has been found in UTT 进取 520W 1.7.7-180627. This issue affects the function strcpy of the file /goform/ConfigAdvideo. The manipulation of the argument timestart leads to buffer overflow. The attack is… |
| CVE-2025-15461 | Alta (7.4) | 0.88% | — | 5 ene 2026 | A flaw has been found in UTT 进取 520W 1.7.7-180627. This vulnerability affects the function strcpy of the file /goform/formTaskEdit. Executing a manipulation of the argument selDateType can lead to buffer overflow. The… |
| CVE-2025-15460 | Alta (7.4) | 0.61% | — | 5 ene 2026 | A vulnerability was detected in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the file /goform/formPptpClientConfig. Performing a manipulation of the argument EncryptionMode results in buffer overflow.… |
| CVE-2025-15459 | Alta (7.4) | 0.85% | — | 5 ene 2026 | A security vulnerability has been detected in UTT 进取 520W 1.7.7-180627. Affected by this issue is the function strcpy of the file /goform/formUser. Such manipulation of the argument passwd1 leads to buffer overflow. The… |
| CVE-2025-14141 | Alta (7.4) | 0.81% | — | 6 dic 2025 | A flaw has been found in UTT 进取 520W 1.7.7-180627. The impacted element is the function strcpy of the file /goform/formArpBindConfig. Executing manipulation of the argument pools can lead to buffer overflow. The attack… |
| CVE-2025-14140 | Media (5.7) | 0.61% | — | 6 dic 2025 | A vulnerability was detected in UTT 进取 520W 1.7.7-180627. The affected element is the function strcpy of the file /goform/websHostFilter. Performing manipulation of the argument addHostFilter results in buffer overflow.… |
| CVE-2025-14139 | Media (5.5) | 0.95% | — | 6 dic 2025 | A security vulnerability has been detected in UTT 进取 520W 1.7.7-180627. Impacted is the function strcpy of the file /goform/formConfigDnsFilterGlobal. Such manipulation of the argument timeRangeName leads to buffer… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.