Back to overview

CVE-2026-12488

MEDIUM
6.2
CVSS 3.1
Description
A memory corruption vulnerability exists in the GV-Cloud functionality of GeoVision GV-VMS V20 20.0.2.  A specially crafted network request can lead to a denial of service. An attacker can impersonate the legitimate server to trigger this vulnerability.

Metadata

CVE ID
CVE-2026-12488
State
PUBLISHED
Assigner
GV
Reserved
2026-06-17 03:39 UTC
Published
2026-06-24 03:34 UTC
Last updated
2026-06-24 05:23 UTC
Primary CWE
CWE-121
CWE-121 Stack-based buffer overflow
Vendor / Product
GeoVision Inc. / GeoVision
Sources
cve.org  ·  NVD

Severity & Metrics

6.2 MEDIUM CVSS 3.1
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:L/I:N/A:H
Affected products (1)
VendorProductPlatformVersions
GeoVision Inc. GeoVision Windows V20.0.2, V20.1.0.0
Weakness (CWE)
CWESourceDescription
CWE-121 cna CWE-121 Stack-based buffer overflow
CVSS scores (1)
ScoreSeverityVersionSourceVector
6.2 MEDIUM 3.1 cna CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:L/I:N/A:H
Back to overview