Junglewise Threat Intelligence

CVE-2026-5544: UTT HiPER 1250GW stack overflow in /goform/formRemoteControl

CVE-2026-5544 · Severity: high · CVSS 8.8 · Published 2026-04-05

Technologies: UTT HiPER 1250GW. Vendors: UTT.

Executive brief

A security vulnerability exists in the UTT HiPER 1250GW enterprise router. This device is used to manage network traffic and provide connectivity for business environments. An attacker could exploit this flaw to crash the device or potentially take full control of the router, leading to network outages or unauthorized access to internal data.

Technical details

A stack-based buffer overflow vulnerability exists in the UTT HiPER 1250GW router firmware up to version 3.2.7-210907-180535. The flaw is located within the /goform/formRemoteControl handler, specifically due to the unsafe use of 'strcpy' when processing the 'Profile' parameter. An authenticated remote attacker can provide a specially crafted, overly long string to this parameter to overwrite the stack. This can result in a denial of service (system crash) or potentially arbitrary code execution. A public exploit has been released, increasing the risk of active exploitation.

Affected products

  • UTT HiPER 1250GW up to 3.2.7-210907-180535

Timeline

  • 2026-03-18: disclosed: Initial discovery and public issue report on GitHub
  • 2026-04-05: advisory: Vulnerability published and assigned CVE-2026-5544

References

Related threats