A buffer overflow vulnerability exists in the upload.cgi module of the iptime NAS firmware v1.5.04. The vulnerability arises due to the unsafe use of the strcpy function to copy attacker-controlled data from the CONTENT_TYPE HTTP header into a fixed-size stack buffer (v8, allocated 8 bytes) without bounds checking. Since this operation occurs before authentication logic is executed, the vulnerability is exploitable pre-authentication.
Metrics
Affected Vendors & Products
References
History
Wed, 06 Aug 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Iptime nas
|
|
CPEs | cpe:2.3:h:iptime:nas:-:*:*:*:*:*:*:* cpe:2.3:o:iptime:nas_firmware:1.5.04:*:*:*:*:*:*:* |
|
Vendors & Products |
Iptime nas
|
Thu, 31 Jul 2025 21:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Iptime
Iptime nas Firmware |
|
Vendors & Products |
Iptime
Iptime nas Firmware |
Wed, 30 Jul 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-121 | |
Metrics |
cvssV3_1
|
Wed, 30 Jul 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A buffer overflow vulnerability exists in the upload.cgi module of the iptime NAS firmware v1.5.04. The vulnerability arises due to the unsafe use of the strcpy function to copy attacker-controlled data from the CONTENT_TYPE HTTP header into a fixed-size stack buffer (v8, allocated 8 bytes) without bounds checking. Since this operation occurs before authentication logic is executed, the vulnerability is exploitable pre-authentication. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-07-30T00:00:00.000Z
Updated: 2025-07-30T19:30:50.586Z
Reserved: 2025-06-16T00:00:00.000Z
Link: CVE-2025-50464

Updated: 2025-07-30T19:30:05.933Z

Status : Analyzed
Published: 2025-07-30T19:15:48.790
Modified: 2025-08-06T16:22:29.850
Link: CVE-2025-50464

No data.