LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →

CVE-2026-7418 - Vulnerability Analysis

HighCVSS: 8.8

Last Updated: April 30, 2026

UTT HiPER 1250GW - Buffer Overflow

Published: April 29, 2026Updated: April 30, 2026Remote Exploitable

Overview

UTT HiPER 1250GW <= 3.2.7-210907-180535 contains a buffer overflow caused by improper handling of the "Profile" argument in route/goform/NTP strcpy function, letting remote attackers execute code, exploit requires crafted request.

Severity & Score

Severity: High
CVSS Score: 8.8
EPSS Score: 0.0%(Probability of exploitation in next 30 days)

Impact

Remote attackers can cause buffer overflow, potentially leading to remote code execution and full system compromise.

Mitigation

Update to the latest version beyond 3.2.7-210907-180535.

Social Media Activity(2 posts)

TheHackerWire
TheHackerWire
@thehackerwire
Apr 29, 2026

🟠 CVE-2026-7418 - High (8.8) A vulnerability was determined in UTT HiPER 1250GW up to 3.2.7-210907-180535. This vulnerability affects the function strcpy of the file route/goform/NTP. Executing a manipulation of the argument Profile can lead to buffer overflow. The attack may... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-7418/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post
TheHackerWire
TheHackerWire
@thehackerwire
Apr 29, 2026

🟠 CVE-2026-7418 - High (8.8) A vulnerability was determined in UTT HiPER 1250GW up to 3.2.7-210907-180535. This vulnerability affects the function strcpy of the file route/goform/NTP. Executing a manipulation of the argument Profile can lead to buffer overflow. The attack may... šŸ”— https://www.thehackerwire.com/vulnerability/CVE-2026-7418/ #CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack

View original post

Details

CVE ID
CVE-2026-7418
Severity
High
CVSS Score
8.8
Type
buffer_overflow
Status
rejected
EPSS
0.0%
Social Posts
2

CWE

  • CWE-119

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Score

0.0%Probability of exploitation in the next 30 days