DLL Hijacking Vulnerability in GeoVision GV-ASManager
CVE-2026-18755

7.3HIGH

Key Information:

Vendor
CVE Published:
4 August 2026

What is CVE-2026-18755?

A weakness in GeoVision's GV-ASManager allows a local attacker with write access to an insecure search directory to execute arbitrary code. By placing a specially crafted dynamic-link library (DLL) file in the application's search path ahead of the original library, an attacker can manipulate the application to load and execute malicious code with the security privileges of the GV-ASManager process.

Affected Version(s)

GV-ASManager Windows V6.3.0

GV-ASManager Windows V6.4.0

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Lloyd Lexter Gealon
.