CVE-2024-11120 is a critical OS Command Injection vulnerability affecting several End-of-Life (EOL) GeoVision devices, including specific GV-DSP_LPR, GV-VS11, GV-VS12, and GVLX_4 firmware versions. This vulnerability carries a CVSS score of 9.8 (CRITICAL) due to its unauthenticated remote attack vector, low complexity, and complete compromise potential (Confidentiality, Integrity, Availability). Notably, this CVE is actively exploited in the wild, with reports of botnets leveraging it to install Mirai malware, and it has garnered significant community and media attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:geovision:gv-vs12_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:geovision:gv-vs11_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:geovision:gv-dsp_lpr_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:geovision:gvlx_4_firmware:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.