GV-IPDU-2026-07-01 - GV-IP Device Utility Vulnerability

Security Advisory Notices
support
Posts: 676
Joined: December 27th, 2014, 8:37 am

GV-IPDU-2026-07-01 - GV-IP Device Utility Vulnerability

Unread post by support »

Release Date: 2026/07/22


Advisory ID
GV-IPDU-2026-07-01


CVE ID
CVE-2026-16519


Affected Product
GV-IP Device Utility V9.0.7.0 or earlier


Security Issue
A DLL hijacking vulnerability exists in the GeoVision GV-IP Device Utility desktop application. The application loads one or more dynamic-link libraries (DLLs) from an unsafe search path, allowing a local attacker to place a malicious DLL in a location searched before the legitimate library location.

Resolution
Reported vulnerability has been resolved with software update GV-IP Device Utility V9.0.8.0 and later versions which are available to download from GeoVision’s official download page at: Link

If you have any questions or concerns in regards the cybersecurity issue, please contact our cybersecurity team: security@geovision.com.tw.
Post Reply