Description
Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_472f08 component
Published: 2026-06-30
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a buffer overflow in the gohead/sub_472f08 component of the UTT nv518G device. It permits a remote attacker to send crafted network input that can cause the device to crash, resulting in a loss of service availability. The weakness maps to CWE-120 and is limited to this component.

Affected Systems

The affected unit is the UTT nv518G network device running firmware version nv518GV3v3.2.7-210919-161313. No other vendors or firmware releases are mentioned, so only installations with this exact firmware are impacted.

Risk and Exploitability

The CISA KEV catalog does not list this issue, and the EPSS score of less than 1% indicates a very low likelihood of observed exploitation. However, the CVSS score of 7.5 signals high severity. Based on the description, the attack vector is inferred to be remote over network traffic targeting the vulnerable component, and a successful exploit would cause a denial-of-service for organizations using the affected device.

Generated by OpenCVE AI on July 15, 2026 at 11:22 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the UTT nv518G firmware to a version that resolves the buffer overflow but only if an official patch is available.
  • If no patch exists, restrict access to the gohead/sub_472f08 component by configuring firewall rules to allow traffic only from trusted networks or IP ranges.
  • Continuously monitor device logs and network traffic for indicators of exploitation attempts and respond promptly to any detected incidents.

Generated by OpenCVE AI on July 15, 2026 at 11:22 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 15 Jul 2026 11:45:00 +0000

Type Values Removed Values Added
Title Buffer Overflow in UTT nv518G Firmware Causing Remote Denial of Service

Mon, 13 Jul 2026 06:15:00 +0000

Type Values Removed Values Added
Title Buffer Overflow in UTT nv518G Firmware Causing Remote Denial of Service

Sat, 11 Jul 2026 17:45:00 +0000

Type Values Removed Values Added
Title Buffer Overflow Enabling Remote Denial of Service on UTT nv518G

Fri, 10 Jul 2026 12:15:00 +0000

Type Values Removed Values Added
Title Buffer Overflow Enabling Remote Denial of Service on UTT nv518G

Thu, 09 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
Title Buffer Overflow in UTT nv518G Device Causing Remote DoS

Wed, 08 Jul 2026 15:15:00 +0000

Type Values Removed Values Added
Title Buffer Overflow in UTT nv518G Device Causing Remote DoS

Tue, 07 Jul 2026 22:30:00 +0000

Type Values Removed Values Added
Title Buffer Overflow in gohead Component Allows Remote Denial of Service on UTT nv518G

Tue, 07 Jul 2026 05:15:00 +0000

Type Values Removed Values Added
Title Buffer Overflow in gohead Component Allows Remote Denial of Service on UTT nv518G

Mon, 06 Jul 2026 13:00:00 +0000

Type Values Removed Values Added
Title Buffer Overflow in UTT nv518G Firmware Leading to Denial of Service

Sun, 05 Jul 2026 15:45:00 +0000

Type Values Removed Values Added
Title Buffer Overflow in UTT nv518G Firmware Leading to Denial of Service

Sun, 05 Jul 2026 00:00:00 +0000

Type Values Removed Values Added
Title Remote Denial of Service via Buffer Overflow in UTT nv518G

Sat, 04 Jul 2026 08:45:00 +0000

Type Values Removed Values Added
Title Remote Denial of Service via Buffer Overflow in UTT nv518G

Fri, 03 Jul 2026 09:45:00 +0000

Type Values Removed Values Added
Title Remote Denial‑of‑Service via Buffer Overflow in UTT nv518G Firmware

Thu, 02 Jul 2026 15:15:00 +0000

Type Values Removed Values Added
Title Remote Denial‑of‑Service via Buffer Overflow in UTT nv518G Firmware

Thu, 02 Jul 2026 01:00:00 +0000

Type Values Removed Values Added
Title Denial of Service via Buffer Overflow in UTT nv518G
Weaknesses CWE-122

Wed, 01 Jul 2026 16:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-120
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 01 Jul 2026 10:30:00 +0000

Type Values Removed Values Added
First Time appeared Utt
Utt nv518g
Vendors & Products Utt
Utt nv518g

Wed, 01 Jul 2026 00:15:00 +0000

Type Values Removed Values Added
Title Denial of Service via Buffer Overflow in UTT nv518G
Weaknesses CWE-122

Tue, 30 Jun 2026 22:45:00 +0000

Type Values Removed Values Added
Description Buffer Overflow vulnerability in UTT nv518G nv518GV3v3.2.7-210919-161313 allows a remote attacker to cause a denial of service via the gohead/sub_472f08 component
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-07-01T15:13:43.610Z

Reserved: 2026-06-08T00:00:00.000Z

Link: CVE-2026-52195

cve-icon Vulnrichment

Updated: 2026-07-01T15:13:36.242Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-15T11:30:17Z

Weaknesses
  • CWE-120

    Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')