Executive brief
A buffer overflow vulnerability exists in the UTT HiPER 1200GW, a professional-grade network router. An attacker with low-level access can exploit this flaw to crash the device or potentially execute unauthorized commands. This could lead to a complete disruption of network services and unauthorized access to internal traffic.
Technical details
A classic stack-based buffer overflow exists in the UTT HiPER 1200GW router firmware up to version 2.5.3-170306. The vulnerability is located in the /goform/formNatStaticMap endpoint and is caused by the unsafe use of the 'strcpy' function when processing the 'NatBind' HTTP POST parameter. An attacker with authenticated (low-privilege) network access can provide an overly long string to this parameter, overwriting adjacent memory. This can result in a denial of service (system crash) or potentially arbitrary code execution. A public exploit (PoC) has been disclosed.
Affected products
- UTT HiPER 1200GW up to 2.5.3-170306
Timeline
- 2026-04-13: disclosed: Initial public disclosure and CVE assignment
- 2026-04-13: advisory