CVE-2026-57881: GeoVision Inc Gv-LPCLPC2011/2211

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

An unauthenticated stack-based buffer overflow vulnerability exists in vlsvr in GeoVision GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by insufficient length validation when processing remote login data. A remote attacker may exploit this vulnerability by sending crafted login data with overly long input, resulting in memory corruption, denial of service, or potentially arbitrary code execution.

Affected products

Published 2026-06-26. Last modified 2026-06-26.