UTT HiPER 1200GW Stack-Based Buffer Overflow Vulnerability in Firewall Management

Vulnerability

A stack-based buffer overflow vulnerability has been identified in the UTT HiPER 1200GW router, affecting firmware versions up to 2.5.3-170306. The vulnerability arises in the 'strcpy' function within the '/goform/formFireWall' endpoint, where user-controlled data is copied to a fixed memory location without proper length validation. This flaw allows for remote exploitation, potentially leading to a denial-of-service condition.

Impact

Exploitation of this vulnerability causes a stack-based buffer overflow, which can lead to arbitrary code execution or a denial-of-service condition.

Reproduction

The vulnerability can be reproduced by sending a POST request to the '/goform/formFireWall' endpoint. The request must include a 'destAddr' parameter with a crafted value that exceeds the buffer size, effectively exploiting the lack of bounds checking in the 'strcpy' function. This can be done by manipulating the 'destAddr' field to include excessive data, particularly when the 'destIP' parameter is set to 'ipRange'.

Added: Jun 1, 2026, 10:25 PM
Updated: Jun 1, 2026, 10:25 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
3.1
exploitability
6.6
remediation
0.0
relevance
9.7
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.