HIGH

CVE-2026-18755

2026-08-04 CVSS v3.1
CVSS
7.3

Description

A DLL hijacking vulnerability in GeoVision GV-ASManager allows a local attacker with write access to an unsafe search directory to execute arbitrary code. By placing a crafted dynamic-link library (DLL) file into the application search path prior to the legitimate library, the malicious code is loaded and executed under the security privileges of the GV-ASManager process.

Weakness (CWE)

CWE-428

EPSS Score

0.13%
Probability of exploitation in next 30 days
2.8th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE