CVE-2026-42364 (CVSS 9.9) - An os command injection vulnerability exists in the DdnsSetting.cgi functionalit

📡 NVD-Latest · 2026-05-04

CVE-2026-42364 (CVSS 9.9) - An os command injection vulnerability exists in the DdnsSetting.cgi functionalit

CVE-2026-42364

CVE-2026-42364 CVSS:9.9

An os command injection vulnerability exists in the DdnsSetting.cgi functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted DDNS configuration can lead to arbitrary command execution. An attacker can modify a configuration value to trigger this vulnerability.

产品: geovision gv-lpc2011_firmware, geovision gv-lpc2011, geovision gv-lpc2211_firmware


📌 来源: NVD-Latest | 🆔 CVE-2026-42364 | 📅 2026-05-04

[!] CONTACT_CHANNELS

如需商务合作、技术咨询或漏洞反馈,请通过以下离岸节点联系作者。

> PING_AUTHOR (@A1RedTeam)