Known Vulnerabilities
CVE-2020-3931
Buffer overflow exists in Geovision Door Access Control device family, an unauthenticated remote attacker can execute arbitrary command.
CRITICAL
CVSS 9.8
Published Jul 08, 2020
CVE-2020-3930
GeoVision Door Access Control device family improperly stores and controls access to system logs, any users can read these logs.
MEDIUM
CVSS 4.0
Published Jun 12, 2020
CVE-2020-3929
GeoVision Door Access Control device family employs shared cryptographic private keys for SSH and HTTPS. Attackers may conduct MITM attack with the derived keys and plaintext recover of encrypted messages.
MEDIUM
CVSS 5.9
Published Jun 12, 2020
CVE-2020-3928
GeoVision Door Access Control device family is hardcoded with a root password, which adopting an identical password in all devices.
MEDIUM
CVSS 6.2
Published Jun 12, 2020