CVE-2026-76004
Deferred Deferred - Pending Action

Stack-Based Buffer Overflow in UTT HiPER 1250GW

Vulnerability report for CVE-2026-76004, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-19

Last updated on: 2026-08-19

Assigner: VulDB

Description

A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/aspApBasicConfigUrcp of the component HTTP Handler. The manipulation of the argument pvid leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-19
Last Modified
2026-08-19
Generated
2026-09-08
AI Q&A
2026-08-19
EPSS Evaluated
2026-09-07
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
utt hiper_1250gw to 3.2.7-210907-180535 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-119 The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CWE-121 A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-76004 is a stack-based buffer overflow vulnerability in the UTT HiPER 1250GW router firmware up to version 3.2.7-210907-180535. The flaw exists in the HTTP Handler component, specifically in the strcpy function of the file /goform/aspApBasicConfigUrcp. An attacker can remotely exploit this by manipulating the pvid argument, leading to a buffer overflow.

Detection Guidance

To detect this vulnerability, monitor network traffic for POST requests to /goform/aspApBasicConfigUrcp with a long pvid parameter. Use tools like Wireshark to capture and analyze HTTP traffic. Check router logs for unusual activity or crashes.

Impact Analysis

This vulnerability allows remote attackers to execute arbitrary code, crash the device, or perform denial of service attacks. It may also enable unauthorized access to sensitive data or network resources if exploited successfully.

Compliance Impact

This vulnerability could impact compliance with GDPR and HIPAA by enabling unauthorized remote access to the router, potentially exposing sensitive network traffic or device configurations. A stack-based buffer overflow may allow attackers to execute arbitrary code, leading to data breaches or loss of confidentiality. Compliance frameworks often require protection against such remote code execution risks.

Mitigation Strategies

Immediately update the UTT HiPER 1250GW firmware to the latest version. Disable remote access to the router's web interface if not required. Block external access to the /goform/aspApBasicConfigUrcp endpoint using firewall rules.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-76004. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart