CVE-2025-10172 | UTT 750W up to 3.2.2-191225 /goform/formPictureUrl importpictureurl buffer overflow
A vulnerability, which was classified as critical, was found in UTT 750W up to 3.2.2-191225. This issue affects some unknown processing of the file /goform/formPictureUrl. Executing manipulation of the argument importpictureurl can lead to buffer overflow.
This vulnerability is handled as CVE-2025-10172. The attack can be executed remotely. Additionally, an exploit exists.
The vendor was contacted early about this disclosure but did not respond in any way.