CVE-2025-15460
Beschrijving NL
Er is een kwetsbaarheid gedetecteerd in UTT 进取 520W 1.7.7-180627. Dit heeft invloed op de functie strcpy van het bestand /goform/formPptpClientConfig. Het uitvoeren van een manipulatie van het argument EncryptionMode resulteert in buffer overflow. Exploitatie van de aanval op afstand is mogelijk. De exploit is nu openbaar en kan worden gebruikt. De verkoper werd vroeg gecontacteerd over deze openbaarmaking, maar reageerde op geen enkele manier.
Origineel (Engels) tonen
A vulnerability was detected in UTT 进取 520W 1.7.7-180627. This affects the function strcpy of the file /goform/formPptpClientConfig. Performing a manipulation of the argument EncryptionMode results in buffer overflow. Remote exploitation of the attack is possible. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.