Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

UTT — Vulnerabilities & Security Advisories 90

Browse all 90 CVE security advisories affecting UTT. AI-powered Chinese analysis, POCs, and references for each vulnerability.

UTT functions as a unified threat management platform, integrating firewall, intrusion prevention, and web application security into a single appliance for enterprise network protection. With ninety recorded Common Vulnerabilities and Exposures, the software has historically suffered from critical remote code execution flaws, allowing attackers to gain unauthorized system access without authentication. Cross-site scripting vulnerabilities have also been prevalent, enabling session hijacking and data exfiltration through malicious scripts injected into administrative interfaces. Additionally, privilege escalation bugs have permitted low-level users to attain root-level control, compromising the integrity of the entire security infrastructure. While the vendor has implemented various patches to address these weaknesses, the high volume of disclosed issues suggests persistent challenges in secure coding practices. These recurring defects highlight significant risks for organizations relying on UTT for perimeter defense, necessitating rigorous patch management and continuous monitoring to mitigate potential exploitation of known attack vectors.

CVE IDTitleCVSSSeverityPublished
CVE-2026-2080 UTT HiPER 810 formUser setSysAdm command injection — HiPER 810CWE-77 7.2 High2026-02-07
CVE-2026-2071 UTT 进取 520W formP2PLimitConfig strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-02-07
CVE-2026-2070 UTT 进取 520W formPolicyRouteConf strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-02-06
CVE-2026-2068 UTT 进取 520W formSyslogConf strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-02-06
CVE-2026-2067 UTT 进取 520W formTimeGroupConfig strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-02-06
CVE-2026-2066 UTT 进取 520W formIpGroupConfig strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-02-06
CVE-2026-1162 UTT HiPER 810 setSysAdm strcpy buffer overflow — HiPER 810CWE-120 9.8 Critical2026-01-19
CVE-2026-1140 UTT 进取 520W ConfigExceptAli strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-19
CVE-2026-1139 UTT 进取 520W ConfigExceptMSN strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-19
CVE-2026-1138 UTT 进取 520W ConfigExceptQQ strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-19
CVE-2026-1137 UTT 进取 520W formWebAuthGlobalConfig strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-19
CVE-2026-0841 UTT 进取 520W formPictureUrl strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-11
CVE-2026-0840 UTT 进取 520W formConfigNoticeConfig strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-11
CVE-2026-0839 UTT 进取 520W APSecurity strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-11
CVE-2026-0838 UTT 进取 520W ConfigWirelessBase strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-11
CVE-2026-0837 UTT 进取 520W formFireWall strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-11
CVE-2026-0836 UTT 进取 520W formConfigFastDirectionW strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-11
CVE-2025-15462 UTT 进取 520W ConfigAdvideo strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-05
CVE-2025-15461 UTT 进取 520W formTaskEdit strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-05
CVE-2025-15460 UTT 进取 520W formPptpClientConfig strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-05
CVE-2025-15459 UTT 进取 520W formUser strcpy buffer overflow — 进取 520WCWE-120 8.8 High2026-01-05
CVE-2025-15431 UTT 进取 512W formFtpServerDirConfig strcpy buffer overflow — 进取 512WCWE-120 8.8 High2026-01-02
CVE-2025-15430 UTT 进取 512W formFtpServerShareDirSelcet strcpy buffer overflow — 进取 512WCWE-120 8.8 High2026-01-02
CVE-2025-15429 UTT 进取 512W formConfigCliForEngineerOnly strcpy buffer overflow — 进取 512WCWE-120 8.8 High2026-01-02
CVE-2025-15428 UTT 进取 512W formRemoteControl strcpy buffer overflow — 进取 512WCWE-120 8.8 High2026-01-02
CVE-2025-15092 UTT 进取 512W ConfigExceptMSN strcpy buffer overflow — 进取 512WCWE-120 8.8 High2025-12-26
CVE-2025-15091 UTT 进取 512W formPictureUrl strcpy buffer overflow — 进取 512WCWE-120 8.8 High2025-12-25
CVE-2025-15090 UTT 进取 512W formConfigNoticeConfig strcpy buffer overflow — 进取 512WCWE-120 8.8 High2025-12-25
CVE-2025-15089 UTT 进取 512W APSecurity strcpy buffer overflow — 进取 512WCWE-120 8.8 High2025-12-25
CVE-2025-14572 UTT 进取 512W formWebAuthGlobalConfig memory corruption — 进取 512WCWE-119 8.8 High2025-12-12

This page lists every published CVE security advisory associated with UTT. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.