PoC Index

CVE-2024-6047

KEVCRITICAL 9.8EPSS 10.1%

Certain EOL GeoVision devices fail to properly filter user input for the specific functionality. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device.

CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
10.07% chance of exploitation in the next 30 days, 95th percentile
CISA KEV
added 2025-05-07
Published
2024-06-17
Updated
2025-10-21

Proof-of-concept exploits (1)

References

Related