// For flags

CVE-2024-6047

GeoVision EOL device - OS Command Injection

Severity Score

9.8
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Attend
*SSVC
Descriptions

Certain EOL GeoVision devices fail to properly filter user input for the specific functionality. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device.

Ciertos dispositivos EOL GeoVision no filtran adecuadamente la entrada del usuario para la funcionalidad especĂ­fica. Los atacantes remotos no autenticados pueden aprovechar esta vulnerabilidad para inyectar y ejecutar comandos arbitrarios del sistema en el dispositivo.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:Attend
Exploitation
None
Automatable
Yes
Tech. Impact
Total
* Organization's Worst-case Scenario
Timeline
  • 2024-06-17 CVE Reserved
  • 2024-06-17 CVE Published
  • 2024-08-01 CVE Updated
  • 2024-12-17 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CAPEC
  • CAPEC-88: OS Command Injection
References (2)
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
GeoVision
Search vendor "GeoVision"
GV DSP LPR V2
Search vendor "GeoVision" for product "GV DSP LPR V2"
<=
Search vendor "GeoVision" for product "GV DSP LPR V2" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV IPCAMD GV BX1500
Search vendor "GeoVision" for product "GV IPCAMD GV BX1500"
<=
Search vendor "GeoVision" for product "GV IPCAMD GV BX1500" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV IPCAMD GV CB220
Search vendor "GeoVision" for product "GV IPCAMD GV CB220"
<=
Search vendor "GeoVision" for product "GV IPCAMD GV CB220" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV IPCAMD GV EBL1100
Search vendor "GeoVision" for product "GV IPCAMD GV EBL1100"
<=
Search vendor "GeoVision" for product "GV IPCAMD GV EBL1100" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV IPCAMD GV EFD1100
Search vendor "GeoVision" for product "GV IPCAMD GV EFD1100"
<=
Search vendor "GeoVision" for product "GV IPCAMD GV EFD1100" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV IPCAMD GV FD2410
Search vendor "GeoVision" for product "GV IPCAMD GV FD2410"
<=
Search vendor "GeoVision" for product "GV IPCAMD GV FD2410" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV IPCAMD GV FD3400
Search vendor "GeoVision" for product "GV IPCAMD GV FD3400"
<=
Search vendor "GeoVision" for product "GV IPCAMD GV FD3400" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV IPCAMD GV FE3401
Search vendor "GeoVision" for product "GV IPCAMD GV FE3401"
<=
Search vendor "GeoVision" for product "GV IPCAMD GV FE3401" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV IPCAMD GV FE420
Search vendor "GeoVision" for product "GV IPCAMD GV FE420"
<=
Search vendor "GeoVision" for product "GV IPCAMD GV FE420" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV-VS14 VS14
Search vendor "GeoVision" for product "GV-VS14 VS14"
<=
Search vendor "GeoVision" for product "GV-VS14 VS14" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV VS03
Search vendor "GeoVision" for product "GV VS03"
<=
Search vendor "GeoVision" for product "GV VS03" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV VS2410
Search vendor "GeoVision" for product "GV VS2410"
<=
Search vendor "GeoVision" for product "GV VS2410" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV VS28XX
Search vendor "GeoVision" for product "GV VS28XX"
<=
Search vendor "GeoVision" for product "GV VS28XX" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV VS216XX
Search vendor "GeoVision" for product "GV VS216XX"
<=
Search vendor "GeoVision" for product "GV VS216XX" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV VS04A
Search vendor "GeoVision" for product "GV VS04A"
<=
Search vendor "GeoVision" for product "GV VS04A" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV VS04H
Search vendor "GeoVision" for product "GV VS04H"
<=
Search vendor "GeoVision" for product "GV VS04H" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GVLX 4 V2
Search vendor "GeoVision" for product "GVLX 4 V2"
<=
Search vendor "GeoVision" for product "GVLX 4 V2" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GVLX 4 V3
Search vendor "GeoVision" for product "GVLX 4 V3"
<=
Search vendor "GeoVision" for product "GVLX 4 V3" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV IPCAMD GV BX130
Search vendor "GeoVision" for product "GV IPCAMD GV BX130"
<=
Search vendor "GeoVision" for product "GV IPCAMD GV BX130" and version " <= "
en
Affected
GeoVision
Search vendor "GeoVision"
GV GM8186 VS14
Search vendor "GeoVision" for product "GV GM8186 VS14"
<=
Search vendor "GeoVision" for product "GV GM8186 VS14" and version " <= "
en
Affected