Junglewise Threat Intelligence

CVE-2026-6186: UTT HiPER 1200GW buffer overflow in formNatStaticMap

CVE-2026-6186 · Severity: high · CVSS 8.8 · Published 2026-04-13

Technologies: UTT HiPER 1200GW. Vendors: UTT.

Executive brief

A buffer overflow vulnerability exists in the UTT HiPER 1200GW, a professional-grade network router. An attacker with low-level access can exploit this flaw to crash the device or potentially execute unauthorized commands. This could lead to a complete disruption of network services and unauthorized access to internal traffic.

Technical details

A classic stack-based buffer overflow exists in the UTT HiPER 1200GW router firmware up to version 2.5.3-170306. The vulnerability is located in the /goform/formNatStaticMap endpoint and is caused by the unsafe use of the 'strcpy' function when processing the 'NatBind' HTTP POST parameter. An attacker with authenticated (low-privilege) network access can provide an overly long string to this parameter, overwriting adjacent memory. This can result in a denial of service (system crash) or potentially arbitrary code execution. A public exploit (PoC) has been disclosed.

Affected products

  • UTT HiPER 1200GW up to 2.5.3-170306

Timeline

  • 2026-04-13: disclosed: Initial public disclosure and CVE assignment
  • 2026-04-13: advisory

References