← العودة للجدول
CVE-2026-42363
CVE-2026-42363 — An insufficient encryption vulnerability exists in the Device Authentication fun
📅 2026-04-27
🔴 Critical 🔥 No NVD Exploit Phishing CVSS 9.3 🎯 EPSS 0.04%

📋 الوصف الكامل

An insufficient encryption vulnerability exists in the Device Authentication functionality of GeoVision GV-IP Device Utility 9.0.5. Listening to broadcast packets can lead to credentials leak. An attacker can listen to broadcast messages to trigger this vulnerability. When interacting with various Geovision devices on the network, the utility may send privileged commands; in order to do so, the

💻 الأنظمة المتأثرة

An insufficient encryption

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-42363

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2026-42363 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←