CVE-2026-88274
- EPSS 0.37%
- Veröffentlicht 10.09.2026 08:20:27
- Zuletzt bearbeitet 10.09.2026 16:18:09
GeoVision GV-LPC2211 V1.13 allows an administrator-controlled wireless SSID containing shell syntax to execute arbitrary commands as root.
CVE-2026-88273
- EPSS 0.37%
- Veröffentlicht 10.09.2026 08:20:07
- Zuletzt bearbeitet 10.09.2026 16:18:09
GeoVision GV-LPC2211 V1.13 allows an administrator-controlled PPPoE username to escape a sourced shell configuration assignment and execute arbitrary commands as root.
CVE-2026-88272
- EPSS 0.3%
- Veröffentlicht 10.09.2026 08:19:47
- Zuletzt bearbeitet 10.09.2026 18:18:15
GeoVision GV-LPC2211 V1.13 allows an administrator-controlled username containing shell metacharacters to be executed as arbitrary root commands when the stored username is later deleted.
CVE-2026-88271
- EPSS 0.23%
- Veröffentlicht 10.09.2026 08:19:30
- Zuletzt bearbeitet 10.09.2026 18:18:15
GeoVision GV-LPC2211 V1.13 allows a Guest user to overwrite device configuration and replace the administrator password through SSVR.
CVE-2026-88270
- EPSS 0.21%
- Veröffentlicht 10.09.2026 08:19:10
- Zuletzt bearbeitet 10.09.2026 18:18:15
GeoVision GV-LPC2211 V1.13 allows a Guest user to enter SSVR firmware-upgrade mode and disrupt live services before any firmware image is validated.
CVE-2026-88269
- EPSS 0.2%
- Veröffentlicht 10.09.2026 08:18:50
- Zuletzt bearbeitet 10.09.2026 15:13:07
GeoVision GV-LPC2211 V1.13 allows a Guest user to retrieve persistent device configuration containing plaintext administrative and user credentials through SSVR.
CVE-2026-57881
- EPSS 0.38%
- Veröffentlicht 26.06.2026 07:17:45
- Zuletzt bearbeitet 26.06.2026 17:16:35
An unauthenticated stack-based buffer overflow vulnerability exists in vlsvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by insufficient length validation when processing remote login data. A remote attacker ...
CVE-2026-57880
- EPSS 0.53%
- Veröffentlicht 26.06.2026 07:17:39
- Zuletzt bearbeitet 26.06.2026 18:17:04
An unauthenticated stack-based buffer overflow vulnerability exists in ssvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by insufficient bounds checking when parsing RTSP Digest authentication fields. A remote...
CVE-2026-57879
- EPSS 0.53%
- Veröffentlicht 26.06.2026 07:17:34
- Zuletzt bearbeitet 26.06.2026 17:16:35
An unauthenticated stack-based buffer overflow vulnerability exists in ssvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by insufficient bounds checking when processing RTSP custom authentication data. A remot...
CVE-2026-57878
- EPSS 0.53%
- Veröffentlicht 26.06.2026 07:17:29
- Zuletzt bearbeitet 26.06.2026 16:16:36
An unauthenticated stack-based buffer overflow vulnerability exists in thttpd in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by insufficient bounds checking when processing web request parameters in a specific r...