


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was identified in UTT HiPER 1250GW up to v3.2.7-210907-180535. The impacted element is the function strcpy of the file /goform/getOneApConfTempE…
Published:
5 augustus 2026 om 00:00:00
Alert date:
5 augustus 2026 om 05:00:59
Source:
nvd.nist.gov
Network Infrastructure, Mobile & IoT, Zero-Day Vulnerabilities
A stack-based buffer overflow vulnerability has been identified in UTT HiPER 1250GW routers up to version v3.2.7-210907-180535. The vulnerability exists in the strcpy function within the file /goform/getOneApConfTempEntry, where manipulation of the tempName argument triggers the overflow. The flaw can be exploited remotely without requiring physical access to the device. A public exploit is already available, increasing the risk of active exploitation in the wild. The vendor was notified prior to disclosure but has not responded, leaving the vulnerability unpatched. This represents a significant risk to network infrastructure devices running the affected firmware versions.
Technical details
Mitigation steps:
Affected products:
UTT HiPER 1250GW v3.2.7-210907-180535 and earlier
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-18897
https://github.com/7wkajk/CVE-VUL/blob/main/102.md
https://vuldb.com/cve/CVE-2026-18897
https://vuldb.com/submit/858617
https://vuldb.com/vuln/385932
https://vuldb.com/vuln/385932/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
