Executive brief
GeoVision GV-Remote E-Map is a desktop application used for remote monitoring and mapping of surveillance systems. The application loads system libraries from unsafe directory paths, allowing a local attacker with write access to inject a malicious library and execute arbitrary code with the privileges of the application.
Technical details
This vulnerability is a DLL hijacking issue where GV-Remote E-Map searches for dynamic-link libraries in locations that are accessible to local users before checking the intended system library directories. An attacker with local write access to a directory searched before the legitimate library location can place a malicious DLL that will be loaded and executed when the application starts. This requires local file system access and results in arbitrary code execution in the security context of the GV-Remote E-Map process. No patch information is currently available.
Affected products
- GeoVision GV-Remote E-Map
Timeline
- 2026-09-17: disclosed