VulnSea

GeoVision Inc. has 24 CVEs on record. Disclosure cadence is accelerating: 24 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 24. The median CVSS is 7.2 (high), with 2 rated critical. None have a confirmed exploitation report. The dominant weakness classes are CWE-121 (8) and CWE-78 (7). Most affected products: GV-LPC2011/LPC2211 (17), GV-LPCLPC2011/2211 (5), GV-LPC2011/LPC2211 - (1).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.2
Publish → KEV
Last 90 days
24 prev 0

Products

  • GV-LPC2011/LPC2211 17
  • GV-LPCLPC2011/2211 5
  • GV-LPC2011/LPC2211 - 1
  • GV-Remote E-map 1
24
Total CVEs
2
Critical
0
CISA KEV
0
Exploited

GeoVision Inc. vulnerabilities

CVEs affecting GeoVision Inc., newest first. Open any entry for full detail, references, and exploit status.

24 CVEsRSS

CVE-2026-92838High· 7.8
4d ago

A DLL hijacking vulnerability exists in the GeoVision GV-Remote E-Map desktop application

A DLL hijacking vulnerability exists in the GeoVision GV-Remote E-Map desktop application. The application loads one or more dynamic-link libraries (DLLs) from an unsafe search path, allowing a local attacker to place a malicious DLL in …

TwilightGeoVision Inc. · GV-Remote E-mapEPSS 0.14%via NVD
CVE-2026-88268Medium· 6.5
1w ago

GeoVision GV-LPC2211 V1.13 contains an authenticated stack buffer overflow in SSVR fragment reassembly that allows a valid user to crash the SSVR service.

GeoVision GV-LPC2211 V1.13 contains an authenticated stack buffer overflow in SSVR fragment reassembly that allows a valid user to crash the SSVR service.

SunlitGeoVision Inc. · GV-LPCLPC2011/2211EPSS 0.24%via NVD
CVE-2026-88273High· 7.2
1w ago

GeoVision GV-LPC2211 V1.13 allows an administrator-controlled PPPoE username to escape a sourced shell configuration assignment and execute arbitrary commands as root.

GeoVision GV-LPC2211 V1.13 allows an administrator-controlled PPPoE username to escape a sourced shell configuration assignment and execute arbitrary commands as root.

TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.37%via NVD
CVE-2026-88271High· 8.8
1w ago

GeoVision GV-LPC2211 V1.13 allows a Guest user to overwrite device configuration and replace the administrator password through SSVR.

GeoVision GV-LPC2211 V1.13 allows a Guest user to overwrite device configuration and replace the administrator password through SSVR.

TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.23%via NVD
CVE-2026-88274High· 7.2
1w ago

GeoVision GV-LPC2211 V1.13 allows an administrator-controlled wireless SSID containing shell syntax to execute arbitrary commands as root.

GeoVision GV-LPC2211 V1.13 allows an administrator-controlled wireless SSID containing shell syntax to execute arbitrary commands as root.

TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.37%via NVD
CVE-2026-88283Medium· 4.9
1w ago

GeoVision GV-LPC2211 V1.13 fails to limit repeated User elements in ONVIF CreateUsers requests, allowing an authenticated administrator to overwrite stack control state and crash the ONVIF worker.

GeoVision GV-LPC2211 V1.13 fails to limit repeated User elements in ONVIF CreateUsers requests, allowing an authenticated administrator to overwrite stack control state and crash the ONVIF worker.

SunlitGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.25%via NVD
CVE-2026-88272High· 7.2
1w ago

GeoVision GV-LPC2211 V1.13 allows an administrator-controlled username containing shell metacharacters to be executed as arbitrary root commands when the stored username is later deleted.

GeoVision GV-LPC2211 V1.13 allows an administrator-controlled username containing shell metacharacters to be executed as arbitrary root commands when the stored username is later deleted.

TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.30%via NVD
CVE-2026-88277High· 8.8
1w ago

GV-LPCLPC2011/2211 - ONVIF Subscribe Address Command Injection

GeoVision GV-LPC2211 V1.13 allows an authenticated ONVIF user to inject shell commands through ConsumerReference.Address and execute arbitrary commands as root.

TwilightGeoVision Inc. · GV-LPCLPC2011/2211EPSS 0.34%via CVEORG
CVE-2026-88270Medium· 6.5
1w ago

GV-LPC2011/LPC2211 - SSVR Guest Firmware-Mode Pre-Validation Service Teardown Denial of Service

GeoVision GV-LPC2211 V1.13 allows a Guest user to enter SSVR firmware-upgrade mode and disrupt live services before any firmware image is validated.

SunlitGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.21%via CVEORG
CVE-2026-88281Medium· 4.9
1w ago

GV-LPC2011/LPC2211 - ONVIF DeleteUsers Repeated-Element Stack Overflow Denial of Service

GeoVision GV-LPC2211 V1.13 fails to limit repeated Username elements in ONVIF DeleteUsers requests, allowing an authenticated administrator to overflow a stack array and crash the ONVIF worker.

SunlitGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.25%via CVEORG
CVE-2026-88280Medium· 4.9
1w ago

GV-LPC2011/LPC2211 - ONVIF SetUser Stack-Frame Overflow Denial of Service

GeoVision GV-LPC2211 V1.13 copies an oversized ONVIF SetUser password into a fixed stack field, allowing an authenticated administrator to crash the ONVIF worker.

SunlitGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.25%via CVEORG
CVE-2026-88279Medium· 4.9
1w ago

GV-LPC2011/LPC2211 - ONVIF CreateUsers Username/Password Stack-Frame Overflow Denial of Service

GeoVision GV-LPC2211 V1.13 copies oversized ONVIF CreateUsers username or password values into fixed stack fields, allowing an authenticated administrator to crash the ONVIF worker.

SunlitGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.25%via CVEORG
CVE-2026-88278Critical· 9.8
1w ago

GV-LPCLPC2011/2211 - ONVIF WS-Security PasswordDigest Replay

GeoVision GV-LPC2211 V1.13 fails to enforce WS-Security UsernameToken freshness or nonce reuse protection, allowing a captured PasswordDigest token to be replayed for subsequent ONVIF operations.

MidnightGeoVision Inc. · GV-LPCLPC2011/2211EPSS 0.27%via CVEORG
CVE-2026-88276High· 7.2
1w ago

GV-LPCLPC2011/2211 - Wireless WEP Key1-Key4 Command Injection

GeoVision GV-LPC2211 V1.13 allows administrator-controlled WEP key values containing shell syntax to execute arbitrary commands as root.

TwilightGeoVision Inc. · GV-LPCLPC2011/2211EPSS 0.37%via CVEORG
CVE-2026-88275High· 7.2
1w ago

GV-LPC2011/LPC2211 - Wireless WPA-PSK Command Injection

GeoVision GV-LPC2211 V1.13 allows an administrator-controlled WPA-PSK containing shell syntax to execute arbitrary commands as root when wireless configuration is applied.

TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.37%via CVEORG
CVE-2026-88284Medium· 4.9
1w ago

GeoVision GV-LPC2211 V1.13 fails to limit repeated User elements in ONVIF SetUser requests, allowing an authenticated administrator to overwrite stack control state and crash the ONVIF worker.

GeoVision GV-LPC2211 V1.13 fails to limit repeated User elements in ONVIF SetUser requests, allowing an authenticated administrator to overwrite stack control state and crash the ONVIF worker.

SunlitGeoVision Inc. · GV-LPC2011/LPC2211 -EPSS 0.25%via NVD
CVE-2026-88269Medium· 6.5
1w ago

GeoVision GV-LPC2211 V1.13 allows a Guest user to retrieve persistent device configuration containing plaintext administrative and user credentials through SSVR.

GeoVision GV-LPC2211 V1.13 allows a Guest user to retrieve persistent device configuration containing plaintext administrative and user credentials through SSVR.

SunlitGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.20%via NVD
CVE-2026-88290High· 7.5
1w ago

GeoVision GV-LPC2211 V1.14 (260903) allows unauthenticated clients to declare unbounded VLSVR frame lengths and indefinitely delay blocking receives, allowing remote exhaustion of memory, connection, and worker resources.

GeoVision GV-LPC2211 V1.14 (260903) allows unauthenticated clients to declare unbounded VLSVR frame lengths and indefinitely delay blocking receives, allowing remote exhaustion of memory, connection, and worker resources.

TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.26%via NVD
CVE-2026-88289High· 7.5
1w ago

GeoVision GV-LPC2211 V1.14 (260903) fails to validate attacker-controlled variable-length fields before copying them into fixed-size stack buffers in multiple VLSVR request handlers, allowing an unauthenticated remote attacker to crash t…

GeoVision GV-LPC2211 V1.14 (260903) fails to validate attacker-controlled variable-length fields before copying them into fixed-size stack buffers in multiple VLSVR request handlers, allowing an unauthenticated remote attacker to crash t…

TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.33%via NVD
CVE-2026-88288Medium· 6.5
1w ago

GeoVision GV-LPC2211 V1.13 fails to restrict the filename supplied to BKDownloadLink.cgi, allowing a remote user with valid web credentials to read arbitrary files accessible to the root-run web service.

GeoVision GV-LPC2211 V1.13 fails to restrict the filename supplied to BKDownloadLink.cgi, allowing a remote user with valid web credentials to read arbitrary files accessible to the root-run web service.

SunlitGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.37%via NVD
CVE-2026-88287High· 7.5
1w ago

GeoVision GV-LPC2211 V1.13 fails to bound the number of Scopes tokens in unauthenticated ONVIF WS-Discovery Probe requests, allowing a remote attacker to corrupt stack control state and crash the discovery process.

GeoVision GV-LPC2211 V1.13 fails to bound the number of Scopes tokens in unauthenticated ONVIF WS-Discovery Probe requests, allowing a remote attacker to corrupt stack control state and crash the discovery process.

TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.31%via NVD
CVE-2026-88286High· 7.5
1w ago

GeoVision GV-LPC2211 V1.13 improperly manages PTZ connection state, allowing an unauthenticated remote client to block the accept loop and prevent new PTZ connections.

GeoVision GV-LPC2211 V1.13 improperly manages PTZ connection state, allowing an unauthenticated remote client to block the accept loop and prevent new PTZ connections.

TwilightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.26%via NVD
CVE-2026-88285Critical· 9.4
1w ago

GeoVision GV-LPC2211 V1.13 exposes a network-accessible PTZ control service without authentication, allowing remote clients to retrieve PTZ information and issue PTZ or raw serial commands.

GeoVision GV-LPC2211 V1.13 exposes a network-accessible PTZ control service without authentication, allowing remote clients to retrieve PTZ information and issue PTZ or raw serial commands.

MidnightGeoVision Inc. · GV-LPC2011/LPC2211EPSS 0.27%via NVD
CVE-2026-88282High· 7.2
1w ago

GeoVision GV-LPC2211 V1.13 allows an administrator-controlled FTP username containing shell metacharacters to be executed as arbitrary root commands during a subsequent FTP-account update.

GeoVision GV-LPC2211 V1.13 allows an administrator-controlled FTP username containing shell metacharacters to be executed as arbitrary root commands during a subsequent FTP-account update.

TwilightGeoVision Inc. · GV-LPCLPC2011/2211EPSS 0.30%via NVD
GeoVision Inc. vulnerabilities (CVEs) · VulnSea