Loading
Certain EOL GeoVision devices have an OS Command Injection vulnerability. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device. Moreover, this vulnerability has already been exploited by attackers, and we have received related reports.
Use CWE-78, Geovision vendor hub and Gv-Vs12 Firmware product page to widen CVE-2024-11120 into its surrounding weakness, vendor, and product context.