CVE-2026-4862Disclosure

LOWCVSS 7.4 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Prioritize remediation for affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. This issue affects the function strcpy of the file /goform/formConfigDnsFilterGlobal of the component Parameter Handler. Such manipulation of the argument GroupName leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • Exploit tooling references are present in monitored signal
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • Peaked 1d ago at 3 mentions (2026-03-26); latest day: 1
  • 4 total mentions across 2 days

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-03-26: 3Mentions · 2026-07-07: 1Exploit Tool / Code · 2026-07-07: 1Technical Details · 2026-03-26: 3Technical Details · 2026-07-07: 103-2607-07
Signal classification2 categories
Disclosure
375.0%
Exploit
125.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-03-263
Disclosure3
2026-07-071
Exploit1
Full discourse4 posts
  • YogSotho@YogSoth0
    Exploit

    #UTT HiPER 1250GW Multi-CVE #Exploit Kit ⚠️ INDUSTRIAL ROUTER Authoritative Python toolkit that fingerprints, authenticates against, and abuses eight independently published stack/heap buffer-overflow vulnerabilities in the UTT HiPER 1250GW web-management interface. | CVE | Endpoint | Param | Class | CVSS | | --------------- | --------------------------------- | ------------ | ------ | ---- | | CVE-2026-14721 | `/goform/ConfigWirelessBase_5g` | `ssid` | stack | 9.8 | | CVE-2026-5566 | `/goform/formNatStaticMap` | `NatBind` | heap | 9.8 | | CVE-2026-7419 | `/goform/formTaskEdit_ap` | `Profile` | heap | 8.8 | | CVE-2026-4488 | `/goform/setSysAdm` | `passwd1` | heap | 9.8 | | CVE-2026-9631 | `/goform/formConfigFastDirectionW`| `Profile` | stack | 9.0 | | CVE-2026-7420 | `/goform/ConfigAdvideo` | `Profile` | heap | 8.8 | | CVE-2026-4862 | `/goform/formConfigDnsFilterGlobal`| `GroupName` | heap | 9.8 | | CVE-2026-7418 | `/goform/NTP` | `Profile` | stack | 8.8 | #0days #cybersecurity #cybernews #hacking #RCE #CVE #python #security #antisec #infosec #iot #rourer

    Post summary

    The tweet announces a Python exploit kit that leverages eight high‑CVSS buffer‑overflow CVEs in the UTT HiPER 1250GW industrial router, detailing the affected endpoints but offering no patches or active‑attack evidence.

    030133725
    1.9K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-4862 A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. This issue affects the function strcpy of the file /goform/formConfigDnsFilter… https://www.cve.org/CVERecord?id=CVE-2026-4862

    Post summary

    CVE-2026-4862 was identified in UTT HiPER 1250GW up to 3.2.7-210907-180535, affecting the strcpy function within /goform/formConfigDnsFilter; no patch, PoC, or exploitation details are provided.

    00010100
    56.8K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-4862 - UTT HiPER 1250GW Parameter formConfigDnsFilterGlobal strcpy buffer overflow Intel Report: https://ift.tt/OpwjKLa

    Post summary

    The text announces a new buffer overflow vulnerability (CVE-2026-4862) with basic technical details and an Intel Report link, but lacks any proof of exploit, active exploitation, or patch information.

    0000022
    286 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-4862: HIGH] Critical security alert: Vulnerability detected in UTT HiPER 1250GW up to 3.2.7-210907-180535 could lead to buffer overflow via remote attack in the Parameter Handler component.#cve,CVE-2026-4862,#cybersecurity https://cvefind.com/CVE-2026-4862

    Post summary

    A critical CVE-2026-4862 vulnerability has been disclosed, affecting UTT HiPER 1250GW and causing a remote buffer overflow in the Parameter Handler component; no exploitation or patch information is provided.

    0000044
    606 followersView on X

Explore more