---
id: CVE-2025-11653
title: A vulnerability was determined in UTT HiPER 2620G up to 3.1.4
summary: >-
  A vulnerability was determined in UTT HiPER 2620G up to 3.1.4. Impacted is the
  function strcpy of the file /goform/fNTP. This manipulation of the argument
  NTPServerIP causes buffer overflow. It is possible to initiate the attack
  remotely…
severity: high
cvss: 8.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-119
  - CWE-120
  - CWE-120
vendor: utt
product: 2620g_firmware
affected:
  - 2620g_firmware <= 3.1.4
published: '2025-10-13'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T12:10:00.217'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-11653'
references:
  - url: 'https://github.com/ashin9/CVE/issues/2'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?ctiid.328070'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?id.328070'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?submit.665712'
    label: cna@vuldb.com
  - url: 'https://github.com/ashin9/CVE/issues/2'
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
epss: 0.00752
epssPercentile: 0.53592
ingestedAt: '2026-10-08T12:39:48.698Z'
---

## Overview

A vulnerability was determined in UTT HiPER 2620G up to 3.1.4. Impacted is the function strcpy of the file /goform/fNTP. This manipulation of the argument NTPServerIP causes buffer overflow. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

## Affected

- `2620g_firmware <= 3.1.4`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
