CVE-2025-26263: Infoleak
GeoVision ASManager Windows desktop application with the version 6.1.2.0 or less (fixed in 6.2.0), is vulnerable to credentials disclosure due to improper memory handling in the ASManagerService.exe process.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
GeoVision ASManager (ASManagerService.exe)to a version that resolves this vulnerability.Fixed in 6.2.0
Event History
Frequently Asked Questions
What is the severity of CVE-2025-26263?
CVE-2025-26263 is considered a medium severity vulnerability due to its potential for credentials disclosure.
How do I fix CVE-2025-26263?
To mitigate CVE-2025-26263, upgrade the GeoVision ASManager application to version 6.1.3.0 or higher.
What is the main issue in CVE-2025-26263?
The main issue in CVE-2025-26263 is improper memory handling in the ASManagerService.exe process leading to credentials disclosure.
Which versions of GeoVision ASManager are affected by CVE-2025-26263?
GeoVision ASManager versions 6.1.2.0 and lower are affected by CVE-2025-26263.
Who is the vendor for CVE-2025-26263?
The vendor for CVE-2025-26263 is GeoVision, which develops the ASManager application.