Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
8.6
CVE-2026-78169: UTT HiPER 1250GW remote overflow lets attackers take control
CVE-2026-78169 · published 11 days ago
Summary
Versions of UTT HiPER 1250GW up to 3.2.7‑210907‑180535 mishandle a specific web request, causing the system to overflow its memory. An attacker on the network can send a crafted request and potentially gain control of the device. Apply the vendor’s latest update or patch and limit network access to trusted users.
What to do
The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| utt | hiper 1250gw | 3.2.7-210907-180535 |
Original advisory text
UTT HiPER 1250GW HTTP Request aspRemoteApConfTempSend strcpy stack-based overflow
A vulnerability was detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. This impacts the function strcpy of the file /goform/aspRemoteApConfTempSend of the component HTTP Request Handler. Performing a manipulation of the argument Profile results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit is now public and may be used.
Severity
8.6
High
CVSS 2.0: 9.0 (NVD)
CVSS 3.1: 9.9 (NVD)
CVSS 4.0: 8.6 (NVD)
Exploitation
EPSS <1%
Type
CWE-119Buffer Overflow
CWE-121Stack-based Buffer Overflow
Timeline
Published24 Aug 2026
Updated3 Sep 2026
First seen24 Aug 2026
Monitor software like this
Free during beta