CVE-2026-57873
Severity CVSS v4.0:
Pending analysis
Type:
CWE-476
NULL Pointer Dereference
Publication date:
26/06/2026
Last modified:
26/06/2026
Description
An unauthenticated<br />
NULL pointer dereference vulnerability exists in IEEE8021x_upload.cgi in GeoVision<br />
GV-LPC2011 and GV-LPC2211 V1.12 and earlier. The vulnerability is caused by<br />
improper validation of multipart upload headers when processing<br />
certificate-related upload fields. A remote attacker may exploit this<br />
vulnerability by sending a malformed multipart request, causing the affected<br />
CGI process to crash and resulting in a denial of service.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH



