CyberRota Analysis
AI-GeneratedGeoVision GV-LPC2211 V1.13 is vulnerable to command injection due to improper handling of the ConsumerReference.Address parameter, allowing authenticated ONVIF users to execute arbitrary commands with root privileges. This high-severity vulnerability poses significant risks, including unauthorized access and potential system compromise. Organizations using this product should prioritize patching or mitigating this vulnerability to protect their systems from exploitation.
CVE
CVE-2026-88277
Severity
HIGH
CVSS
8.8
EPSS
0.34%
Original NVD Description
GeoVision GV-LPC2211 V1.13 allows an authenticated ONVIF user to inject shell commands through ConsumerReference.Address and execute arbitrary commands as root.