CVE-2026-88270: GV-LPC2011/LPC2211 - SSVR Guest Firmware-Mode Pre-Validation Service Teardown Denial of Service
GeoVision GV-LPC2211 V1.13 allows a Guest user to enter SSVR firmware-upgrade mode and disrupt live services before any firmware image is validated.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
GeoVision GV-LPC2211/LPC2011 (SSVR Guest Firmware-Mode Pre-Validation Service Teardown DoS)to a version that resolves this vulnerability.Fixed in V1.13
Event History
Frequently Asked Questions
Who can exploit this issue?
An attacker needs Guest-level access to the affected device. The attack can be performed remotely over the network and does not require user interaction.
What is the operational impact?
A Guest user can place the device into SSVR firmware-upgrade mode, disrupting live services before any firmware image is validated. The reported impact is denial of service; no confidentiality or integrity impact is specified.
Which devices are identified as affected?
The affected products listed are GeoVision GV-LPC2211, specifically V1.13, and GeoVision GV-LPC2011. No affected version is provided for the GV-LPC2011.