Impact
An issue in the gohead/sub_445C5C routine of the UTT nv518G router firmware allows a remote attacker to trigger a denial of service by sending crafted requests that exhaust system resources. The weakness matches CWE‑400, and the CVSS score of 7.5 indicates that simple network access is sufficient to exploit it. When the vulnerability is triggered, the device may stop responding, disrupting network availability for any clients connected to the router.
Affected Systems
UTT nv518G routers running firmware nv518GV3v3.2.7-210919-161313 are affected. No other firmware versions are documented as vulnerable at this time.
Risk and Exploitability
The EPSS score of less than 1 % and the absence from the CISA KEV catalog suggest that public exploitation is currently unlikely. However, the high CVSS rating and the fact that the flaw is reachable over the network means that an attacker who can reach the router over its network interfaces could cause serious disruption. The likely attack vector is a remote request to the vulnerable interface that could result in a denial of service.
OpenCVE Enrichment