CVE-2024-6047
KEVCRITICAL 9.8EPSS 10.1%
Certain EOL GeoVision devices fail to properly filter user input for the specific functionality. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 10.07% chance of exploitation in the next 30 days, 95th percentile
- CISA KEV
- added 2025-05-07
- Published
- 2024-06-17
- Updated
- 2025-10-21