CVE-2026-7418Disclosure

LOWCVSS 7.4 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Prioritize remediation for affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

A vulnerability was determined in UTT HiPER 1250GW up to 3.2.7-210907-180535. This vulnerability affects the function strcpy of the file route/goform/NTP. Executing a manipulation of the argument Profile can lead to buffer overflow. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-119CWE-120

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • Exploit tooling references are present in monitored signal
  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 2d ago at 2 mentions (2026-04-29); latest day: 1
  • 4 total mentions across 3 days

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-04-29: 2Mentions · 2026-04-30: 1Mentions · 2026-07-07: 1Exploit Tool / Code · 2026-07-07: 1Technical Details · 2026-04-29: 2Technical Details · 2026-04-30: 1Technical Details · 2026-07-07: 104-2904-3007-07
Signal classification3 categories
Disclosure
250.0%
General
125.0%
Exploit
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-292
Disclosure1General1
2026-04-301
Disclosure1
2026-07-071
Exploit1
Full discourse4 posts
  • YogSotho@YogSoth0
    Exploit

    #UTT HiPER 1250GW Multi-CVE #Exploit Kit ⚠️ INDUSTRIAL ROUTER Authoritative Python toolkit that fingerprints, authenticates against, and abuses eight independently published stack/heap buffer-overflow vulnerabilities in the UTT HiPER 1250GW web-management interface. | CVE | Endpoint | Param | Class | CVSS | | --------------- | --------------------------------- | ------------ | ------ | ---- | | CVE-2026-14721 | `/goform/ConfigWirelessBase_5g` | `ssid` | stack | 9.8 | | CVE-2026-5566 | `/goform/formNatStaticMap` | `NatBind` | heap | 9.8 | | CVE-2026-7419 | `/goform/formTaskEdit_ap` | `Profile` | heap | 8.8 | | CVE-2026-4488 | `/goform/setSysAdm` | `passwd1` | heap | 9.8 | | CVE-2026-9631 | `/goform/formConfigFastDirectionW`| `Profile` | stack | 9.0 | | CVE-2026-7420 | `/goform/ConfigAdvideo` | `Profile` | heap | 8.8 | | CVE-2026-4862 | `/goform/formConfigDnsFilterGlobal`| `GroupName` | heap | 9.8 | | CVE-2026-7418 | `/goform/NTP` | `Profile` | stack | 8.8 | #0days #cybersecurity #cybernews #hacking #RCE #CVE #python #security #antisec #infosec #iot #rourer

    Post summary

    The post announces a Python exploit kit targeting eight CVEs in the UTT HiPER 1250GW router, providing detailed technical information but no evidence of active exploitation or patch updates.

    030133725
    1.9K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7418 Buffer Overflow in UTT HiPER 1250GW Up to 3.2.7-210907-180... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7418 Don't wait vulnerability scanning results: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=2

    Post summary

    Announcement of CVE-2026-7418—a buffer overflow in UTT HiPER 1250GW up to version 3.2.7-210907-180; no PoC, exploit code, or patch details are provided.

    0000025
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-7418 A vulnerability was determined in UTT HiPER 1250GW up to 3.2.7-210907-180535. This vulnerability affects the function strcpy of the file route/goform/NTP. Executing a m… https://www.cve.org/CVERecord?id=CVE-2026-7418 ----- Traducción: CVE-2026-7418 Se … http://infoflow.cloud`

    Post summary

    CVE-2026-7418 was identified in UTT HiPER 1250GW, affecting the strcpy function in route/goform/NTP, but no PoC, exploit, patch, or active exploitation details are provided.

    0000024
    74 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-7418 A vulnerability was determined in UTT HiPER 1250GW up to 3.2.7-210907-180535. This vulnerability affects the function strcpy of the file route/goform/NTP. Executing a m… https://www.cve.org/CVERecord?id=CVE-2026-7418

    Post summary

    The post reports a strcpy-based vulnerability in UTT HiPER 1250GW’s NTP module, but provides no PoC, exploit code, or patch details.

    00000193
    57.3K followersView on X

Explore more