GeoVision Vulnerabilities and Affected Products
Vulnerabilities associated with GeoWebServer.
Products
Clear product- Door Access Control Device4 vulnerabilities
- GVLX 4 V22 vulnerabilities
- GVLX 4 V32 vulnerabilities
- Multiple Devices2 vulnerabilities
- GeoVision Geowebserver1 vulnerability
- GeoWebServer1 vulnerability
- GV VS04A1 vulnerability
- GV VS04H1 vulnerability
- GV-ADR27011 vulnerability
- GV-ASManager1 vulnerability
- gv-bx15001 vulnerability
- GV-BX1500/GV-MFD15011 vulnerability
- gv-cb2201 vulnerability
- gv-dsp_lpr_v21 vulnerability
- GV-DSP_LPR_V31 vulnerability
- gv-dsp_lpr_v3_firmware1 vulnerability
- gv-ebl11001 vulnerability
- GV-Edge Recording Manager1 vulnerability
- gv-efd11001 vulnerability
- gv-fd24101 vulnerability
- gv-fd34001 vulnerability
- gv-fd34011 vulnerability
- gv-fe4201 vulnerability
- gv-lx_4_v21 vulnerability
- gv-lx_4_v31 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2021-47795HIGH | GeoVision Geowebserver 5.3.3 - Local FIle InclusionGeoVision GeoWebServer 5.3.3 contains multiple vulnerabilities including local file inclusion, cross-site scripting, and remote code execution through improper input sanitization. Attackers can exploit the WebStrings.srf endpoint by manipulating path traversal and injection parameters to access system files and execute malicious scripts. | CVSS8.7v4.0 | EPSS2.61% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |