VYPR
Unrated severityCISA KEVNVD Advisory· Published Jun 17, 2024· Updated Oct 21, 2025

GeoVision EOL device - OS Command Injection

CVE-2024-6047

Description

Certain EOL GeoVision devices fail to properly filter user input for the specific functionality. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device.

Affected products

20
  • GeoVision/GV_DSP_LPR_V2v5
    Range: all
  • GeoVision/GV_IPCAMD_GV_BX1500v5
    Range: all
  • GeoVision/GV_IPCAMD_GV_CB220v5
    Range: all
  • GeoVision/GV_IPCAMD_GV_EBL1100v5
    Range: all
  • GeoVision/GV_IPCAMD_GV_EFD1100v5
    Range: all
  • GeoVision/GV_IPCAMD_GV_FD2410v5
    Range: all
  • GeoVision/GV_IPCAMD_GV_FD3400v5
    Range: all
  • GeoVision/GV_IPCAMD_GV_FE3401v5
    Range: all
  • GeoVision/GV_IPCAMD_GV_FE420v5
    Range: all
  • GeoVision/GV-VS14_VS14v5
    Range: all
  • GeoVision/GV_VS03v5
    Range: all
  • GeoVision/GV_VS2410v5
    Range: all
  • GeoVision/GV_VS28XXv5
    Range: all
  • GeoVision/GV_VS216XXv5
    Range: all
  • GeoVision/GV VS04Av5
    Range: all
  • GeoVision/GV VS04Hv5
    Range: all
  • GeoVision/GVLX 4 V2v5
    Range: all
  • GeoVision/GVLX 4 V3v5
    Range: all
  • GeoVision/GV_IPCAMD_GV_BX130v5
    Range: all
  • GeoVision/GV_GM8186_VS14v5
    Range: all

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.