


Perceptive Security
SOC/SIEM Consultancy

A stack overflow vulnerability exists in the WebCam Server Login functionality of GeoVision GV-VMS V20 20.0.2. A specially crafted HTTP request can lead to an a…
Published:
3 mei 2026 om 22:00:00
Alert date:
4 mei 2026 om 02:02:31
Source:
nvd.nist.gov
Web Technologies, Mobile & IoT, Critical Infrastructure
A critical stack overflow vulnerability (CVE-2026-42370) affects GeoVision GV-VMS V20 20.0.2 WebCam Server Login functionality. The vulnerability allows unauthenticated attackers to achieve arbitrary code execution through specially crafted HTTP requests. This represents a high-severity security issue as it requires no authentication and can lead to complete system compromise. The vulnerability exists in the login component of the video management system, making it particularly dangerous for organizations using GeoVision surveillance systems.
Technical details
Mitigation steps:
Affected products:
GeoVision GV-VMS V20
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-42370
https://talosintelligence.com/vulnerability_reports/
https://www.geovision.com.tw/cyber_security.php
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
