{"id":"CVE-2026-18755","published":"2026-08-04T08:16:34.930","lastModified":"2026-08-04T16:16:22.230","description":"A DLL hijacking vulnerability in GeoVision GV-ASManager allows a local attacker with write access to an unsafe search directory to execute arbitrary code. By placing a crafted dynamic-link library (DLL) file into the application search path prior to the legitimate library, the malicious code is loaded and executed under the security privileges of the GV-ASManager process.","cvssScore":7.3,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","cwes":["CWE-428"],"vendors":[],"products":[],"references":[{"url":"https://www.geovision.com.tw/cyber_security.php","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"This vulnerability allows a local attacker to execute arbitrary code by placing a crafted DLL in an unsafe directory, potentially leading to unauthorized access and control of the GV-ASManager process.","exploitability":"Exploitation requires write access to a specific directory and knowledge of the application's search path; it is moderately difficult but feasible for attackers with local privileges.","blast_radius":"If exploited, this could result in significant damage, including data theft or system compromise, affecting users running affected versions of GV-ASManager.","remediation":"Restrict write access to directories used by GV-ASManager and ensure all libraries are sourced from trusted locations.","tags":["rce","dll-hijacking","local-privilege","code-execution"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-08-11T07:00:12.522Z"}}