Impact
The vulnerability is a stack-based buffer overflow located in the gohead/sub_483ba0 component of UTT nv518G firmware nv518GV3v3.2.7‑210919‑161313. When a specially crafted payload is sent over the network to this component, the overflow corrupts the stack and causes the router to crash, resulting in a denial of service. No information suggests the possibility of code execution, data theft, or privilege escalation, so the primary security consequence is loss of service.
Affected Systems
UTT nv518G routers running firmware version nv518GV3v3.2.7‑210919‑161313 are affected. Other UTT device models or firmware revisions are not documented in the CVE record and are therefore not considered affected.
Risk and Exploitability
The CVSS score of 7.5 indicates high severity, while the EPSS score of less than 1% suggests a low likelihood of exploitation under current conditions. The vulnerability is remotely exploitable over the network and does not require local access. It is not listed in the CISA KEV catalog, implying no known widespread exploitation. An attacker with network reach to the vulnerable interface could trigger the overflow and cause a denial‑of‑service event, though such attacks are currently considered unlikely based on available data.
OpenCVE Enrichment