Release Date: 2026/06/17
Advisory ID
GV-VMS-2026-06-01
CVE ID
CVE-2026-12488
Affected Product
GV-VMSV20.0.2 or earlier
Security Issue
CVE-2026-12488
A memory corruption vulnerability exists in the GV-Cloud functionality of GeoVision GV-VMS V20 20.0.2. A specially crafted network request can lead to a denial of service. An attacker can impersonate the legitimate server to trigger this vulnerability.
Resolution
Reported vulnerability is resolved with GV-VMSV20.1.0. User may visit our download page https://www.geovision.com.tw/download/product/ or contact GeoVision Support at support@geovision.com.tw for assistance
If you have any questions or concerns in regards the cybersecurity issue, please contact our cybersecurity team: security@geovision.com.tw.