SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-88289

HIGH · CVSS 7.5 EPSS 0.33%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

The GeoVision GV-LPC2211 V1.14 (260903) is vulnerable due to improper validation of attacker-controlled variable-length fields, which can lead to stack buffer overflows in multiple VLSVR request handlers. This vulnerability allows unauthenticated remote attackers to crash the VLSVR service, potentially disrupting operations. Organizations utilizing this product should prioritize remediation to mitigate the risk of service disruption and unauthorized access.

CVE
CVE-2026-88289
Severity
HIGH
CVSS
7.5
EPSS
0.33%

Original NVD Description

GeoVision GV-LPC2211 V1.14 (260903) fails to validate attacker-controlled variable-length fields before copying them into fixed-size stack buffers in multiple VLSVR request handlers, allowing an unauthenticated remote attacker to crash the VLSVR service.