Filtered by vendor Geovision Subscriptions
Filtered by product Gv-bx1500 Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2018-25118 1 Geovision 2 Gv-bx1500, Gv-mfd1501 2025-10-23 N/A
GeoVision embedded IP devices, confirmed on GV-BX1500 and GV-MFD1501, contain a remote command injection vulnerability via /PictureCatch.cgi that enables an attacker to execute arbitrary commands on the device. The vulnerable models have been declared end-of-life (EOL) by the vendor. VulnCheck has observed this vulnerability being exploited in the wild as of 2025-10-19 08:55:13.141502 UTC.
CVE-2024-6047 1 Geovision 55 Gv-bx1500, Gv-cb220, Gv-dsp Lpr and 52 more 2025-10-21 9.8 Critical
Certain EOL GeoVision devices fail to properly filter user input for the specific functionality. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device.