CVE-2026-88290GV-LPC2011/LPC2211 - Unauthenticated VLSVR Slowloris and Memory Resource Exhaustion Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity High CVE-2026-88289GV-LPC2011/LPC2211 - Multiple Pre-Authentication Stack Buffer Overflows in VLSVR Request Handlers Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity High CVE-2026-88288GV-LPC2011/LPC2211 - Arbitrary File Read Through BKDownloadLink.cgi Symlink Creation Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity Medium CVE-2026-88287GV-LPC2011/LPC2211 -ONVIF Discovery Probe Scopes Stack-Frame Overflow Denial of Service Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity High CVE-2026-88286GV-LPC2011/LPC2211 - PTZ Connection-State Accept-Loop Denial of Service Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity High CVE-2026-88285GV-LPC2011/LPC2211 - Unauthenticated PTZ Control Service Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity Critical CVE-2026-88284GV-LPC2011/LPC2211 - ONVIF SetUser Repeated-Element Stack-Frame Overflow Denial of Service Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 - Published 09/10/2026 Severity Medium CVE-2026-88283GV-LPC2011/LPC2211 - ONVIF CreateUsers Repeated-Element Stack-Frame Overflow Denial of Service Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity Medium CVE-2026-88282GV-LPCLPC2011/2211 - Stored FTP-Username Command Injection Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 09/10/2026 Severity High CVE-2026-88281GV-LPC2011/LPC2211 - ONVIF DeleteUsers Repeated-Element Stack Overflow Denial of Service Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity Medium CVE-2026-88280GV-LPC2011/LPC2211 - ONVIF SetUser Stack-Frame Overflow Denial of Service Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity Medium CVE-2026-88279GV-LPC2011/LPC2211 - ONVIF CreateUsers Username/Password Stack-Frame Overflow Denial of Service Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity Medium CVE-2026-88278GV-LPCLPC2011/2211 - ONVIF WS-Security PasswordDigest Replay Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 09/10/2026 Severity Critical CVE-2026-88277GV-LPCLPC2011/2211 - ONVIF Subscribe Address Command Injection Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 09/10/2026 Severity High CVE-2026-88276GV-LPCLPC2011/2211 - Wireless WEP Key1-Key4 Command Injection Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 09/10/2026 Severity High CVE-2026-88275GV-LPC2011/LPC2211 - Wireless WPA-PSK Command Injection Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity High CVE-2026-88274GV-LPC2011/LPC2211 - Wireless SSID Command Injection Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity High CVE-2026-88273GV-LPC2011/LPC2211 - PPPoE Username Shell-Configuration Command Injection Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity High CVE-2026-88272GV-LPC2011/LPC2211 - Stored Administrator-Username Command Injection Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity High CVE-2026-88271GV-LPC2011/LPC2211 - SSVR Guest Configuration Overwrite and Administrative Credential Takeover Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity High CVE-2026-88270GV-LPC2011/LPC2211 - SSVR Guest Firmware-Mode Pre-Validation Service Teardown Denial of Service Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity Medium CVE-2026-88269GV-LPC2011/LPC2211 - SSVR Guest Configuration and Credential Disclosure Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPC2011/LPC2211 Published 09/10/2026 Severity Medium CVE-2026-88268GV-LPC2011/LPC2211 - SSVR Fragment-Reassembly Stack Overflow Denial of Service Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 09/10/2026 Severity Medium CVE-2026-18755GV-ASManager DLL hijacking vulnerability Exploitation status Not known exploited Fix Not confirmed Affected product G GV-ASManager Published 08/04/2026 Severity High CVE-2026-18754Hardcoded Cryptographic Key on GV-AS1620 Controller Firmware (GV-Cloud) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-AS1620 (GV-Cloud) Published 08/04/2026 Severity Critical CVE-2026-18753Hardcoded Cryptographic Key on GV-AS1620 Controller Firmware (GV-ASManager) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-AS1620 (AS-Manager) Published 08/04/2026 Severity Critical CVE-2026-16519GeoVision GV-IP Device Utility DLL Search Order Hijacking Vulnerability Exploitation status Not known exploited Fix YesAffected product G GV-IP Device Utility Published 07/24/2026 Severity High CVE-2026-57278GeoVision GeoWebPlayer Websocket Server connectInfo handler stack-based buffer overflow vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57277GeoVision GeoWebPlayer Websocket Server connectInfo handler stack-based buffer overflow vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57276GeoVision GeoWebPlayer Websocket Server connectInfo handler stack-based buffer overflow vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57275GeoVision GeoWebPlayer Websocket Server connectInfo handler stack-based buffer overflow vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57274GeoVision GeoWebPlayer Websocket Server connectInfo handler stack-based buffer overflow vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57273GeoVision GeoWebPlayer Websocket Server connectInfo handler stack-based buffer overflow vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57272GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57271GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57270GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57269GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57268GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57267GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57266GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57265GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57264GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-13132GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-13131GeoVision GeoWebPlayer Websocket Server out-of-bounds read vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-13125GeoVision GeoWebPlayer 1.1.1.0 Websocket Server function vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoWebPlayer Published 07/02/2026 Severity High CVE-2026-57881GV-LPC2011/LPC2211 - unauthorized stack-based buffer overflow vulnerability (vlsvr) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 06/26/2026 Severity Critical CVE-2026-57880GV-LPC2011/LPC2211 - unauthorized buffer overflow via RTSP Digest username (ssvr) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 06/26/2026 Severity Critical CVE-2026-57879GV-LPC2011/LPC2211 - unauthorized buffer overflow via AuthMode/AuthValue path (ssvr) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 06/26/2026 Severity Critical CVE-2026-57878GV-LPC2011/LPC2211 - unauthorized buffer overflow vulnerability (thttpd) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 06/26/2026 Severity Critical CVE-2026-57877GV-LPC2011/LPC2211 - unauthorized format string vulnerability (vlsvr) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 06/26/2026 Severity High CVE-2026-57876GV-LPC2011/LPC2211 - unauthorized out-of-bounds writing vulnerability (onvif.cgi) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 06/26/2026 Severity High CVE-2026-57875GV-LPC2011/LPC2211 - unauthorized null pointer dereference vulnerability in packet parsing Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 06/26/2026 Severity High CVE-2026-57874GV-LPC2011/LPC2211 - unauthorized buffer overflow vulnerability (IEEE8021x_upload.cgi) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 06/26/2026 Severity High CVE-2026-57873GV-LPC2011/LPC2211 - unauthorized null pointer dereference vulnerability (IEEE8021x_upload.cgi) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 06/26/2026 Severity High CVE-2026-57872GV-LPC2011/LPC2211 - unauthorized directory traversal vulnerability (get_fcont.cgi) Exploitation status Not known exploited Fix Not confirmed Affected product G GV-LPCLPC2011/2211 Published 06/26/2026 Severity High CVE-2026-12851GeoVision GV-I/O Box 4E libNetSetObj.so OS command injection vulnerability Exploitation status Not known exploited Fix Not confirmed Affected product G GV-I/O Box 4E Published 06/24/2026 Severity Critical CVE-2026-12850GeoVision GV-I/O Box 4E libNetSetObj.so OS command injection vulnerability Exploitation status Not known exploited Fix Not confirmed Affected product G GV-I/O Box 4E Published 06/24/2026 Severity Critical CVE-2026-12849GeoVision GV-I/O Box 4E libNetSetObj.so OS command injection vulnerability Exploitation status Not known exploited Fix Not confirmed Affected product G GV-I/O Box 4E Published 06/24/2026 Severity Critical CVE-2026-12486GeoVision GV-I/O Box 4E libNetSetObj.so OS command injection vulnerability Exploitation status Not known exploited Fix Not confirmed Affected product G GV-I/O Box 4E Published 06/24/2026 Severity Critical CVE-2026-12848GeoVision GV-I/O Box DVRSearch buffer overflow vulnerabilities in CMD_IP_SET command Exploitation status Not known exploited Fix Not confirmed Affected product G GV-I/O Box 4E Published 06/24/2026 Severity Critical CVE-2026-12847GeoVision GV-I/O Box DVRSearch buffer overflow vulnerabilities in CMD_IP_SET command Exploitation status Not known exploited Fix Not confirmed Affected product G GV-I/O Box 4E Published 06/24/2026 Severity Critical CVE-2026-12846GeoVision GV-I/O Box DVRSearch buffer overflow vulnerabilities in CMD_IP_SET command Exploitation status Not known exploited Fix Not confirmed Affected product G GV-I/O Box 4E Published 06/24/2026 Severity Critical CVE-2026-12485GeoVision GV-I/O Box DVRSearch buffer overflow vulnerabilities in CMD_IP_SET command Exploitation status Not known exploited Fix Not confirmed Affected product G GV-I/O Box 4E Published 06/24/2026 Severity Critical CVE-2026-12488GeoVision GV-VMS V20 GV-Cloud memory corruption vulnerability Exploitation status Not known exploited Fix YesAffected product G GeoVision Published 06/24/2026 Severity Medium CVE-2026-7841GV-ASWeb Remote Code Execution (RCE) vulnerability Exploitation status Not known exploited Fix YesAffected product A ASManager Published 05/06/2026 Severity High CVE-2026-42370GeoVision GV-VMS V20 WebCam Server Login stack overflow vulnerability Exploitation status Not known exploited Fix YesAffected product G GV-VMS V20.0.2 Published 05/04/2026 Severity Critical CVE-2026-7372GeoVision GV-VMS V20 WebCam Server Login stack overflow vulnerability Exploitation status Not known exploited Fix YesAffected product G GV-VMS V20.0.2 Published 05/04/2026 Severity Critical CVE-2026-42369GeoVision GV-VMS V20 WebCam Server stack overflow vulnerability Exploitation status Not known exploited Fix YesAffected product G GV-VMS V20.0.2 Published 05/04/2026 Severity Critical CVE-2026-42368GeoVision LPC2011/LPC2211 Web Interface privilege escalation vulnerability Exploitation status Not known exploited Fix YesAffected product G GV-LPC2011/LPC2211 Published 05/04/2026 Severity Critical CVE-2026-42367GeoVision LPC2011/LPC2211 Web Interface / ssi.cgi privilege escalation vulnerability via leak of Administrator credentials Exploitation status Not known exploited Fix YesAffected product G GV-LPC2011/LPC2211 Published 05/04/2026 Severity Medium CVE-2026-7371GeoVision LPC2011/LPC2211 Web Interface / ssi.cgi reflected cross-site scripting (XSS) vulnerabilities Exploitation status Not known exploited Fix YesAffected product G GV-LPC2011/LPC2211 Published 05/04/2026 Severity High CVE-2026-42366GeoVision LPC2011/LPC2211 Web Interface / ssi.cgi reflected cross-site scripting (XSS) vulnerabilities Exploitation status Not known exploited Fix YesAffected product G GV-LPC2011/LPC2211 Published 05/04/2026 Severity High CVE-2026-42365GeoVision LPC2011/LPC2211 Web Interface guessable session cookie vulnerability Exploitation status Not known exploited Fix YesAffected product G GV-LPC2011/LPC2211 Published 05/04/2026 Severity High CVE-2026-42364GeoVision LPC2011/LPC2211 Web Interface / DdnsSetting.cgi OS command injection vulnerability Exploitation status Not known exploited Fix YesAffected product G GV-LPC2011/LPC2211 Published 05/04/2026 Severity Critical CVE-2026-7161GeoVision GV-IP Device Utility Device Authentication insufficient encryption vulnerability Exploitation status Not known exploited Fix YesAffected product G GV-IP Device Utility Published 05/04/2026 Severity Critical CVE-2026-42363GeoVision GV-IP Device Utility Device Authentication insufficient encryption vulnerability Exploitation status Not known exploited Fix YesAffected product G GV-IP Device Utility Published 04/26/2026 Severity Critical CVE-2018-25118GeoVision Command Injection RCE via /PictureCatch.cgi Exploitation status Public exploit Fix YesAffected product G GV-BX1500 Published 10/20/2025 Severity Critical