CVE-2026-31067: Utt 520w Firmware

Medium severity, CVSS 6.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A remote command execution (RCE) vulnerability in the /goform/formReleaseConnect component of UTT Aggressive 520W v3v1.7.7-180627 allows attackers to execute arbitrary commands via a crafted string.

Affected products

  • Utt 520w Firmware: version 1.7.7-180627 only

Published 2026-04-06. Last modified 2026-06-17.