VYPR

GV-I/O Box 4E

by Geovision

CVEs (8)

  • CVE-2026-12848CriJun 24, 2026
    risk 0.65cvss 10.0epss 0.00

    GV-I/O Box 4E is a smart embedded device with 4 input and 4 relays output that can be controlled over Ethernet and RS-485. DVRSearch is a service running by default on the IOBox listening for UDP messages on port 10001. Any user on the network can send messages to this service…

  • CVE-2026-12847CriJun 24, 2026
    risk 0.65cvss 10.0epss 0.00

    GV-I/O Box 4E is a smart embedded device with 4 input and 4 relays output that can be controlled over Ethernet and RS-485. DVRSearch is a service running by default on the IOBox listening for UDP messages on port 10001. Any user on the network can send messages to this service…

  • CVE-2026-12846CriJun 24, 2026
    risk 0.65cvss 10.0epss 0.00

    GV-I/O Box 4E is a smart embedded device with 4 input and 4 relays output that can be controlled over Ethernet and RS-485. DVRSearch is a service running by default on the IOBox listening for UDP messages on port 10001. Any user on the network can send messages to this service…

  • CVE-2026-12485CriJun 24, 2026
    risk 0.65cvss 10.0epss 0.01

    GV-I/O Box 4E is a smart embedded device with 4 input and 4 relays output that can be controlled over Ethernet and RS-485. DVRSearch is a service running by default on the IOBox listening for UDP messages on port 10001. Any user on the network can send messages to this service…

  • CVE-2026-12851CriJun 24, 2026
    risk 0.59cvss 9.1epss 0.02

    Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision GV-I/O Box 4E 2.09. A specially crafted network packet can lead to command execution. An attacker can send a network request to trigger this vulnerability. `libNetSetObj.so`…

  • CVE-2026-12850CriJun 24, 2026
    risk 0.59cvss 9.1epss 0.02

    Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision GV-I/O Box 4E 2.09. A specially crafted network packet can lead to command execution. An attacker can send a network request to trigger this vulnerability. `libNetSetObj.so`…

  • CVE-2026-12849CriJun 24, 2026
    risk 0.59cvss 9.1epss 0.02

    Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision GV-I/O Box 4E 2.09. A specially crafted network packet can lead to command execution. An attacker can send a network request to trigger this vulnerability. `libNetSetObj.so`…

  • CVE-2026-12486CriJun 24, 2026
    risk 0.59cvss 9.1epss 0.02

    Multiple OS command injection vulnerabilities exist in the libNetSetObj.so functionality of GeoVision GV-I/O Box 4E 2.09. A specially crafted network packet can lead to command execution. An attacker can send a network request to trigger this vulnerability. `libNetSetObj.so`…