Threats Tagged 'cve-2025-14572'
View all threats tagged with 'cve-2025-14572'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-14572'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2025-14572 is a high-severity memory corruption vulnerability in the UTT 进取 512W device firmware version 1.7.7-171114. The flaw arises from improper handling of the 'hidcontact' argument in the /goform/formWebAuthGlobalConfig endpoint, allowing remote attackers to cause memory corruption without authentication or user interaction. Exploitation can lead to significant confidentiality, integrity, and availability impacts. Although no public exploits are currently observed in the wild, the exploit code has been disclosed. The vendor has not responded to vulnerability reports, and no patches are available. European organizations using this device, especially in critical infrastructure or telecommunications, face risks of service disruption or data compromise. Mitigation requires network-level protections, strict access controls, and monitoring for suspicious activity. Countries with higher adoption of UTT devices or strategic telecom infrastructure are at greater risk. Join the discussion | CVE Database V5 | 12/12/2025, 19:32:06 UTC Added: 12/12/2025, 19:54:09 UTC |
Showing 1 to 1 of 1 result