Vendor
UTT vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 28 vulnerabilities in UTT: 0 in the last 7 days and 18 in the last 90 days, 1 of them critical and 0 exploited in the wild. The most recent, CVE-2026-78170, was published on 24 August 2026. 3 technologies have a page of their own.
- Last 7 days
- 0
- Last 90 days
- 18
- Critical, all time
- 1
- Exploited in the wild
- 0
About UTT
A networking equipment provider specializing in routers, switches, and wireless solutions.
UTT technologies
Latest UTT vulnerabilities
- CVE-2026-78170: UTT HiPER 1200GW buffer overflow in formConfigFastDirectionWhighCVSS 8.8EPSS 0.8%
- CVE-2026-78169: UTT HiPER 1250GW stack buffer overflow in HTTP request handlercriticalCVSS 9.9EPSS 0.8%
- CVE-2026-18898: UTT HiPER 1200GW stack buffer overflow in ConfigAdvideohighCVSS 8.8EPSS 0.8%
- CVE-2026-18897: UTT HiPER 1250GW stack buffer overflow in getOneApConfTempEntryhighCVSS 8.8EPSS 0.8%
- CVE-2026-18895: UTT HiPER 1250GW stack buffer overflow in APSecurity_5ghighCVSS 8.8EPSS 0.8%
- CVE-2026-14721: UTT HiPER 1250GW stack overflow in ConfigWirelessBase_5ghighCVSS 8.8
- CVE-2026-52192: UTT nv518G command injection in gohead/sub_445C5CinfoCVSS 9.8
- CVE-2026-52191: UTT nv518G Buffer Overflow in gohead/sub_444C8CinfoCVSS 9.8
- CVE-2026-52189: UTT nv518G buffer overflow in gohead/sub_487330infoCVSS 5.3
- CVE-2026-52188: UTT nv518G buffer overflow in gohead componentinfoCVSS 7.5
- CVE-2026-52187: UTT nv518G buffer overflow in GoAhead sub_483ba0infoCVSS 7.5
- CVE-2026-52190: UTT nv518G buffer overflow in gohead/sub_448384infoCVSS 7.5
- CVE-2026-52186: UTT nv518G SQL injection in gohead/sub_463bbcinfoCVSS 9.8
- CVE-2026-52198: UTT nv518G heap buffer overflow in gohead componentinfoCVSS 7.5
- CVE-2026-52197: UTT nv518G command injection in gohead/sub_44af70infoCVSS 9.8
- CVE-2026-52195: UTT nv518G buffer overflow in gohead/sub_472f08infoCVSS 7.5
- CVE-2026-52193: UTT nv518G buffer overflow in gohead componentinfoCVSS 7.5
- CVE-2026-52196: UTT nv518G Buffer Overflow in gohead/sub_416f28infoCVSS 7.5
- CVE-2026-11517: UTT HiPER 2610G buffer overflow in formConfigDnsFilterGlobalhighCVSS 8.8
- CVE-2026-11516: UTT HiPER 2610G buffer overflow in formNatStaticMapmediumCVSS 5.5
- CVE-2026-10293: UTT HiPER Router stack buffer overflow in formFireWallhighCVSS 8.8
- CVE-2026-10292: UTT HiPER 1200GW stack buffer overflow in /goform/formTaskEdithighCVSS 8.8
- CVE-2026-9632: UTT HiPER 1250GW stack overflow in formGroupConfighighCVSS 8.8
- CVE-2026-9631: UTT HiPER 1250GW stack overflow in Web Management InterfacehighCVSS 8.8
- CVE-2026-9628: UTT HiPER 1200GW stack overflow in formPptpClientConfighighCVSS 8.8
Most severe UTT vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-78169: UTT HiPER 1250GW stack buffer overflow in HTTP request handlercriticalCVSS 9.9EPSS 0.8%
- CVE-2026-18898: UTT HiPER 1200GW stack buffer overflow in ConfigAdvideohighCVSS 8.8EPSS 0.8%
- CVE-2026-18897: UTT HiPER 1250GW stack buffer overflow in getOneApConfTempEntryhighCVSS 8.8EPSS 0.8%
- CVE-2026-18895: UTT HiPER 1250GW stack buffer overflow in APSecurity_5ghighCVSS 8.8EPSS 0.8%
- CVE-2026-78170: UTT HiPER 1200GW buffer overflow in formConfigFastDirectionWhighCVSS 8.8EPSS 0.8%
- CVE-2026-5566: UTT HiPER 1250GW buffer overflow in formNatStaticMaphighCVSS 8.8EPSS 0.5%
- CVE-2026-5544: UTT HiPER 1250GW stack overflow in /goform/formRemoteControlhighCVSS 8.8EPSS 0.5%
- CVE-2026-14721: UTT HiPER 1250GW stack overflow in ConfigWirelessBase_5ghighCVSS 8.8
- CVE-2026-11517: UTT HiPER 2610G buffer overflow in formConfigDnsFilterGlobalhighCVSS 8.8
- CVE-2026-10293: UTT HiPER Router stack buffer overflow in formFireWallhighCVSS 8.8
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 13 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 3 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 2 | 1 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/vendors/utt.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "UTT vulnerabilities", https://junglewise.ai/threats/vendors/utt, 26 September 2026.