CVE安全快讯 | 高危漏洞汇总(7条)

2026-06-26 18:09


📊 本轮新增高危漏洞: 11条

以下为最新收录的安全漏洞,请及时关注。


🟠 高危漏洞(CVSS 7.0 - 8.9)

CVE-2026-57877 — CVSS 8.6(🟠 高危)

An unauthenticated
format string vulnerability exists in vlsvr in GeoVision GV-LPC2011 and
GV-LPC2211 V1.12 and earlier. The vulnerability is caused b...

  • CWE: CWE-134
  • 状态: Received

CVE-2026-2053 — CVSS 8.3(🟠 高危)

The WSO2 API Manager's message flow component, when processing WS-Addressing headers, does not sufficiently validate or restrict user-controlled input...

  • CWE: CWE-918
  • 状态: Received

CVE-2026-57872 — CVSS 7.5(🟠 高危)

An unauthenticated
directory traversal vulnerability exists in get_fcont.cgi in GeoVision
GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerabili...

  • CWE: CWE-22
  • 状态: Received

CVE-2026-57873 — CVSS 7.5(🟠 高危)

An unauthenticated
NULL pointer dereference vulnerability exists in IEEE8021x_upload.cgi in GeoVision
GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The...

  • CWE: CWE-476
  • 状态: Received

CVE-2026-57874 — CVSS 7.5(🟠 高危)

An unauthenticated
buffer overflow vulnerability exists in IEEE8021x_upload.cgi in GeoVision
GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerab...

  • CWE: CWE-120
  • 状态: Received

CVE-2026-57875 — CVSS 7.5(🟠 高危)

An unauthenticated
NULL pointer dereference vulnerability exists in the HTTP request parsing logic
of multiple CGI components in GeoVision GV-LPC2011 ...

  • CWE: CWE-476
  • 状态: Received

CVE-2026-57876 — CVSS 7.5(🟠 高危)

An unauthenticated
out-of-bounds write vulnerability exists in onvif.cgi in GeoVision GV-LPC2011
and GV-LPC2211 V1.12 and earlier. The vulnerability i...

  • CWE: CWE-787
  • 状态: Received

🤖 本文由 CVE 安全快讯机器人自动生成
数据来源: NVD (National Vulnerability Database) | 获取时间: 2026-06-26 18:09