Geovision
geovision
27 CVEs • 77 products
Products (77)
Click to collapseToggle
Products (77)
Click to collapse
CVEs (27)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A stack overflow vulnerability exists in the WebCam Server Login functionality of GeoVision GV-VMS V20 20.0.2. A specially crafted HTTP request can lead to an arbitrary code execution. An attacker can make an unauthentic...Show more |
1Geovision 2Gv Lpc2011 Firmware Gv Lpc2211 FirmwareJun 17, 2026 May 4, 2026 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Multiple reflected cross-site scripting (xss) vulnerabilities exist in the Web Interface / ssi.cgi functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted malicious url can lead to an arbitrary javascript co...Show more |
An insufficient encryption vulnerability exists in the Device Authentication functionality of GeoVision GV-IP Device Utility 9.0.5. Listening to broadcast packets can lead to credentials leak. An attacker can listen to b...Show more |
A stack overflow vulnerability exists in the WebCam Server Login functionality of GeoVision GV-VMS V20 20.0.2. A specially crafted HTTP request can lead to an arbitrary code execution. An attacker can make an unauthentic...Show more |
1Geovision 2Gv Lpc2011 Firmware Gv Lpc2211 FirmwareJun 17, 2026 May 4, 2026 N/A· v4 9.9 CRITICAL· v3 N/A· v2 A privilege escalation vulnerability exists in the Web Interface functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted HTTP request can lead to execute priviledged operation. An attacker can visit a webpag...Show more |
1Geovision 2Gv Lpc2011 Firmware Gv Lpc2211 FirmwareJun 17, 2026 May 4, 2026 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A privilege escalation vulnerability exists in the Web Interface / ssi.cgi functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted HTTP request can lead to credentials leak. An attacker can visit a webpage t...Show more |
1Geovision 2Gv Lpc2011 Firmware Gv Lpc2211 FirmwareJun 17, 2026 May 4, 2026 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Multiple reflected cross-site scripting (xss) vulnerabilities exist in the Web Interface / ssi.cgi functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted malicious url can lead to an arbitrary javascript co...Show more |
1Geovision 2Gv Lpc2011 Firmware Gv Lpc2211 FirmwareJun 17, 2026 May 4, 2026 N/A· v4 7.5 HIGH· v3 N/A· v2 A guessable session cookie vulnerability exists in the Web Interface functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted series of HTTP requests can lead to an authentication bypas. An attacker can brute...Show more |
1Geovision 2Gv Lpc2011 Firmware Gv Lpc2211 FirmwareJun 17, 2026 May 4, 2026 N/A· v4 8.8 HIGH· v3 N/A· v2 An os command injection vulnerability exists in the DdnsSetting.cgi functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted DDNS configuration can lead to arbitrary command execution. An attacker can modify...Show more |
GeoVision GV-ASManager Missing Authorization Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of GeoVision GV-ASManager. Althoug...Show more |
1Geovision 4Gv Dsp Lpr Firmware Gv Vs11 FirmwareGv Vs12 Firmware+1 moreJun 17, 2026 Nov 15, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Certain EOL GeoVision devices have an OS Command Injection vulnerability. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device. Moreover, this vuln...Show more |
1Geovision 20Gv Bx130 Firmware Gv Bx1500 FirmwareGv Cb220 Firmware+17 moreJun 17, 2026 Jun 17, 2024 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Certain EOL GeoVision devices fail to properly filter user input for the specific functionality. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the devi...Show more |
GV-ASManager V6.0.1.0 contains a Local File Inclusion vulnerability in GeoWebServer via Path. |
In GeoVision GV-ADR2701 cameras, an attacker could edit the login response to access the web application.
|
1Geovision 1Gv Edge Recording Manager Jul 9, 2026 May 4, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 An issue was discovered in GeoVision GV-Edge Recording Manager 2.2.3.0 for windows, which contains improper permissions within the default installation and allows attackers to execute arbitrary code and gain escalated pr...Show more |
1Geovision 6Gv As1010 Firmware Gv As210 FirmwareGv As410 Firmware+3 moreJun 17, 2026 Jul 8, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Buffer overflow exists in Geovision Door Access Control device family, an unauthenticated remote attacker can execute arbitrary command. |
GeoVision Door Access Control device family improperly stores and controls access to system logs, any users can read these logs. |
2Androvideo Geovision3Gv Vd8700 Firmware Gv Vr360 FirmwareVd 1 FirmwareJun 17, 2026 Aug 29, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 A relative path traversal vulnerability found in Advan VD-1 firmware versions up to 230. It allows attackers to download arbitrary files via url cgibin/ExportSettings.cgi?Download=filepath, without any authentication. |
2Androvideo Geovision3Gv Vd8700 Firmware Gv Vr360 FirmwareVd 1 FirmwareJun 17, 2026 Aug 29, 2019 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 A XSS found in Advan VD-1 firmware versions up to 230. VD-1 responses a path error message when a requested resource was not found in page cgibin/ssi.cgi. It leads to a reflected XSS because the error message does not es...Show more |
2Androvideo Geovision3Gv Vd8700 Firmware Gv Vr360 FirmwareVd 1 FirmwareJun 17, 2026 Aug 29, 2019 N/A· v4 9.8 CRITICAL· v3 5.0 MEDIUM· v2 A vulnerability of remote credential disclosure was discovered in Advan VD-1 firmware versions up to 230. An attacker can export system configuration which is not encrypted to get the administrator’s account and password...Show more |