Impact
A buffer overflow (CWE-120) exists in the gohead/sub_425994 component of the UTT nv518G firmware version 518GV3v3.2.7-210919-161313. The flaw allows a remote attacker to deliver crafted input that overflows the stack, causing the device to crash or reboot. The result is a denial of service; no evidence of confidentiality or integrity compromise is disclosed.
Affected Systems
The only affected devices are UTT nv518G series machines running firmware 518GV3v3.2.7-210919-161313. No other vendors or products are listed in the CVE data.
Risk and Exploitability
With a CVSS score of 7.5, the vulnerability is high severity. The EPSS score is < 1%, indicating a very low but non-zero likelihood of exploitation. It is not listed in the CISA KEV catalog. An attacker can execute the overflow remotely via the vulnerable gohead/sub_425994 service, likely triggering a reboot or crash that disrupts availability. No confirmed exploitation reports are known.
OpenCVE Enrichment