Metrics
Affected Vendors & Products
Fri, 21 Nov 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Utt
Utt 750w |
|
| Vendors & Products |
Utt
Utt 750w |
Thu, 20 Nov 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 20 Nov 2025 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in UTT 进取 750W up to 3.2.2-191225. Affected by this vulnerability is the function system of the file /goform/formPdbUpConfig. Such manipulation of the argument policyNames leads to command injection. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | UTT 进取 750W formPdbUpConfig system command injection | |
| Weaknesses | CWE-74 CWE-77 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-11-20T01:32:07.186Z
Updated: 2025-11-20T14:30:06.287Z
Reserved: 2025-11-19T19:09:28.771Z
Link: CVE-2025-13442
Updated: 2025-11-20T14:28:16.963Z
Status : Awaiting Analysis
Published: 2025-11-20T15:17:25.057
Modified: 2025-11-21T15:13:59.083
Link: CVE-2025-13442
No data.