CVE-2026-2135: Utt 810 Firmware

High severity, CVSS 8.8. EPSS: 4.9% chance of exploitation in the next 30 days.

A vulnerability was detected in UTT HiPER 810 1.7.4-141218. The impacted element is the function sub_43F020 of the file /goform/formPdbUpConfig. Performing a manipulation of the argument policyNames results in command injection. It is possible to initiate the attack remotely. The exploit is now public and may be used.

Affected products

  • Utt 810 Firmware: version 1.7.4-141218 only

Published 2026-02-08. Last modified 2026-06-17.