CVE-2025-15461 | UTT 进取 520W 1.7.7-180627 /goform/formTaskEdit strcpy selDateType buffer overflow
A vulnerability labeled as critical has been found in UTT 进取 520W 1.7.7-180627. This vulnerability affects the function strcpy of the file /goform/formTaskEdit. Executing a manipulation of the argument selDateType can lead to buffer overflow.
This vulnerability is handled as CVE-2025-15461. The attack can be executed remotely. Additionally, an exploit exists.
The vendor was contacted early about this disclosure but did not respond in any way.