Impact
The vulnerability is a buffer overflow in the gohead/sub_472f08 component of the UTT nv518G device. It permits a remote attacker to send crafted network input that can cause the device to crash, resulting in a loss of service availability. The weakness maps to CWE-120 and is limited to this component.
Affected Systems
The affected unit is the UTT nv518G network device running firmware version nv518GV3v3.2.7-210919-161313. No other vendors or firmware releases are mentioned, so only installations with this exact firmware are impacted.
Risk and Exploitability
The CISA KEV catalog does not list this issue, and the EPSS score of less than 1% indicates a very low likelihood of observed exploitation. However, the CVSS score of 7.5 signals high severity. Based on the description, the attack vector is inferred to be remote over network traffic targeting the vulnerable component, and a successful exploit would cause a denial-of-service for organizations using the affected device.
OpenCVE Enrichment