Utt · Hiper 1200Gw · CVE-2026-78170
**Name of the Vulnerable Software and Affected Versions**
UTT HiPER 1200GW versions prior to 2.5.3-170306
**Description**
A buffer overflow exists in the `strcpy()` function within the `/goform/formConfigFastDirectionW` file. A remote attacker can trigger this issue by manipulating the `ssid` argument. A buffer overflow occurs when a program writes more data to a block of memory, or buffer, than that buffer is allowed to hold, potentially leading to crashes or arbitrary code execution.
**Recommendations**
Update UTT HiPER 1200GW to a version newer than 2.5.3-170306.
As a temporary mitigation, restrict access to the `/goform/formConfigFastDirectionW` endpoint to prevent remote manipulation of the `ssid` argument.