{"id":"CVE-2025-15089","title":"A vulnerability has been found in UTT 进取 512W up to 1.7.7-171114","summary":"A vulnerability has been found in UTT 进取 512W up to 1.7.7-171114. This affects the function strcpy of the file /goform/APSecurity. The manipulation of the argument wepkey1 leads to buffer overflow. The attack is possible to be carried ou…","severity":"high","cvss":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-119","CWE-120","CWE-120"],"vendor":"utt","product":"512w_firmware","affected":["512w_firmware <= 1.7.7-171114"],"published":"2025-12-25","updated":"2026-10-07","sourceUpdated":"2026-10-07T13:10:00.713","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-15089","references":[{"url":"https://github.com/cymiao1978/cve/blob/main/new/14.md","label":"cna@vuldb.com"},{"url":"https://github.com/cymiao1978/cve/blob/main/new/14.md#poc","label":"cna@vuldb.com"},{"url":"https://vuldb.com/?ctiid.338418","label":"cna@vuldb.com"},{"url":"https://vuldb.com/?id.338418","label":"cna@vuldb.com"},{"url":"https://vuldb.com/?submit.708348","label":"cna@vuldb.com"}],"tags":["nvd"],"epss":0.0077,"epssPercentile":0.54168,"ingestedAt":"2026-10-07T13:31:04.570Z","slug":"CVE-2025-15089","body":"## Overview\n\nA vulnerability has been found in UTT 进取 512W up to 1.7.7-171114. This affects the function strcpy of the file /goform/APSecurity. The manipulation of the argument wepkey1 leads to buffer overflow. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.\n\n## Affected\n\n- `512w_firmware <= 1.7.7-171114`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":49,"depthScoreParts":{"impact":48.4,"likelihood":0.2,"exploitation":0,"ransomware":0},"changes":[]}