UTT HiPER 1250GW Buffer Overflow Vulnerability in ConfigAdvideo Function
Vulnerability
A buffer overflow vulnerability has been identified in the UTT HiPER 1250GW router, affecting firmware versions through 3.2.7-210907-180535. The issue arises in the ConfigAdvideo function, where the strcpy function is used to copy data from the Profile parameter without proper boundary checks. This oversight allows for remote exploitation, leading to a denial-of-service condition.
Impact
Exploitation of this vulnerability causes a denial-of-service condition on the affected device.
Reproduction
The vulnerability can be reproduced by sending a POST request to the /goform/ConfigAdvideo endpoint. The request must include a 'Profile' parameter with a payload that exceeds the buffer size, taking advantage of the lack of input validation. This can be done by manipulating the 'Content-Length' header to accommodate the oversized payload.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
