Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-23201 | A buffer overflow vulnerability exists in the upload.cgi module of the iptime NAS firmware v1.5.04. The vulnerability arises due to the unsafe use of the strcpy function to copy attacker-controlled data from the CONTENT_TYPE HTTP header into a fixed-size stack buffer (v8, allocated 8 bytes) without bounds checking. Since this operation occurs before authentication logic is executed, the vulnerability is exploitable pre-authentication. |
Wed, 06 Aug 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Iptime nas
|
|
| CPEs | cpe:2.3:h:iptime:nas:-:*:*:*:*:*:*:* cpe:2.3:o:iptime:nas_firmware:1.5.04:*:*:*:*:*:*:* |
|
| Vendors & Products |
Iptime nas
|
Thu, 31 Jul 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Iptime
Iptime nas Firmware |
|
| Vendors & Products |
Iptime
Iptime nas Firmware |
Wed, 30 Jul 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-121 | |
| Metrics |
cvssV3_1
|
Wed, 30 Jul 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A buffer overflow vulnerability exists in the upload.cgi module of the iptime NAS firmware v1.5.04. The vulnerability arises due to the unsafe use of the strcpy function to copy attacker-controlled data from the CONTENT_TYPE HTTP header into a fixed-size stack buffer (v8, allocated 8 bytes) without bounds checking. Since this operation occurs before authentication logic is executed, the vulnerability is exploitable pre-authentication. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-07-30T19:30:50.586Z
Reserved: 2025-06-16T00:00:00.000Z
Link: CVE-2025-50464
Updated: 2025-07-30T19:30:05.933Z
Status : Analyzed
Published: 2025-07-30T19:15:48.790
Modified: 2025-08-06T16:22:29.850
Link: CVE-2025-50464
No data.
OpenCVE Enrichment
Updated: 2025-07-31T20:56:25Z
EUVD