Showing 2 vulnerabilities on this page for GVLX 4 V2

Signals CISA KEV Ransomware Nuclei
GeoVision vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

GeoVision EOL devices - OS Command Injection

Certain EOL GeoVision devices have an OS Command Injection vulnerability. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device. Moreover, this vulnerability has already been exploited by attackers, and we have received related reports.

CWE-78Nov 15, 2024
CVSS9.8v3.1EPSS28.6%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

GeoVision EOL device - OS Command Injection

Certain EOL GeoVision devices fail to properly filter user input for the specific functionality. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device.

CWE-78Jun 17, 2024
CVSS9.8v3.1EPSS10.1%PoCs0SignalsListed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX