CWE
120 119
Advisory Published
Updated

CVE-2020-3931: GeoVision Door Access Control Device - Buffer overflow vulnerability

First published: Wed Jul 08 2020(Updated: )

Buffer overflow exists in Geovision Door Access Control device family, an unauthenticated remote attacker can execute arbitrary command.

Credit: twcert@cert.org.tw

Affected SoftwareAffected VersionHow to fix
Geovision GV-AS210<2.21
Geovision GV-AS210 Firmware
Geovision GV-AS410<2.21
Geovision GV-AS410 Firmware
Geovision GV-AS810 Firmware<2.21
GeoVision
Geovision Gv-gf1921<1.10
Geovision GV-GF1921
Geovision GV-AS1010<1.32
Geovision GV-AS1010
Geovision Gv-gf1922 Firmware<1.10
GeoVision

Remedy

Update to version 2.22 in GV-AS210, Update to version 2.22 in GV-AS410, Update to version 2.22 in GV-AS810, Update to version 1.22 in GV-GF192x, Update to version 1.33 in GV-AS1010

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2020-3931?

    CVE-2020-3931 is classified as a critical vulnerability due to its potential for remote command execution.

  • How do I fix CVE-2020-3931?

    To mitigate CVE-2020-3931, upgrade the affected Geovision Door Access Control firmware to the latest version beyond 2.21.

  • Who is affected by CVE-2020-3931?

    CVE-2020-3931 affects various models in the Geovision Door Access Control device family running specific firmware versions.

  • What type of attack is possible with CVE-2020-3931?

    An unauthenticated remote attacker can exploit CVE-2020-3931 to execute arbitrary commands on the vulnerable devices.

  • Is CVE-2020-3931 being actively exploited?

    While there are no known active exploitation cases reported, the critical nature of CVE-2020-3931 makes it a significant risk.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203