CVE-2026-88290
- EPSS 0.26%
- Veröffentlicht 10.09.2026 08:26:16
- Zuletzt bearbeitet 10.09.2026 16:18:10
GeoVision GV-LPC2211 V1.14 (260903) allows unauthenticated clients to declare unbounded VLSVR frame lengths and indefinitely delay blocking receives, allowing remote exhaustion of memory, connection, and worker resources.
CVE-2026-88289
- EPSS 0.33%
- Veröffentlicht 10.09.2026 08:25:41
- Zuletzt bearbeitet 10.09.2026 16:18:10
GeoVision GV-LPC2211 V1.14 (260903) fails to validate attacker-controlled variable-length fields before copying them into fixed-size stack buffers in multiple VLSVR request handlers, allowing an unauthenticated remote attacker to crash the VLSVR serv...
CVE-2026-88288
- EPSS 0.37%
- Veröffentlicht 10.09.2026 08:25:21
- Zuletzt bearbeitet 10.09.2026 16:18:10
GeoVision GV-LPC2211 V1.13 fails to restrict the filename supplied to BKDownloadLink.cgi, allowing a remote user with valid web credentials to read arbitrary files accessible to the root-run web service.
CVE-2026-88286
- EPSS 0.26%
- Veröffentlicht 10.09.2026 08:24:36
- Zuletzt bearbeitet 10.09.2026 16:18:10
GeoVision GV-LPC2211 V1.13 improperly manages PTZ connection state, allowing an unauthenticated remote client to block the accept loop and prevent new PTZ connections.
CVE-2026-88285
- EPSS 0.27%
- Veröffentlicht 10.09.2026 08:24:15
- Zuletzt bearbeitet 10.09.2026 16:18:10
GeoVision GV-LPC2211 V1.13 exposes a network-accessible PTZ control service without authentication, allowing remote clients to retrieve PTZ information and issue PTZ or raw serial commands.
CVE-2026-88283
- EPSS 0.25%
- Veröffentlicht 10.09.2026 08:23:36
- Zuletzt bearbeitet 10.09.2026 16:18:10
GeoVision GV-LPC2211 V1.13 fails to limit repeated User elements in ONVIF CreateUsers requests, allowing an authenticated administrator to overwrite stack control state and crash the ONVIF worker.
CVE-2026-88281
- EPSS 0.25%
- Veröffentlicht 10.09.2026 08:22:48
- Zuletzt bearbeitet 10.09.2026 16:18:09
GeoVision GV-LPC2211 V1.13 fails to limit repeated Username elements in ONVIF DeleteUsers requests, allowing an authenticated administrator to overflow a stack array and crash the ONVIF worker.
CVE-2026-88280
- EPSS 0.25%
- Veröffentlicht 10.09.2026 08:22:34
- Zuletzt bearbeitet 10.09.2026 16:18:09
GeoVision GV-LPC2211 V1.13 copies an oversized ONVIF SetUser password into a fixed stack field, allowing an authenticated administrator to crash the ONVIF worker.
CVE-2026-88279
- EPSS 0.25%
- Veröffentlicht 10.09.2026 08:22:12
- Zuletzt bearbeitet 10.09.2026 16:18:09
GeoVision GV-LPC2211 V1.13 copies oversized ONVIF CreateUsers username or password values into fixed stack fields, allowing an authenticated administrator to crash the ONVIF worker.
CVE-2026-88275
- EPSS 0.37%
- Veröffentlicht 10.09.2026 08:20:58
- Zuletzt bearbeitet 10.09.2026 16:18:09
GeoVision GV-LPC2211 V1.13 allows an administrator-controlled WPA-PSK containing shell syntax to execute arbitrary commands as root when wireless configuration is applied.