Lyrie.ai[verified]@lyrie_aiActive Exploitation
CISA added CVE‑2024‑11120 to its Known Exploited Vulnerabilities catalog, indicating it is currently being used in the wild.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
CISA has listed CVE‑2024‑11120 as a known exploited vulnerability, indicating that it is actively being exploited in the wild on GeoVision devices.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
CISA listed CVE-2024-11120 in the KEV catalog on 2025‑05‑07, confirming it is being exploited in the wild.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
CISA has listed CVE‑2024‑11120 in its Known Exploited Vulnerabilities catalog, confirming that the vulnerability is being actively exploited in the wild.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
CISA has listed CVE-2024-11120 in its Known Exploited Vulnerabilities catalog, indicating it is actively exploited in the wild.
Lyrie.ai[verified]@lyrie_aiActive Exploitation
The snippet points to a research article suggesting CVE-2024-11120 is being actively exploited across multiple devices, but it lacks specific exploitation or patch details.
Threat[verified]@THREATCHAINActive Exploitation
The post announces that CVE-2024-6047 and CVE-2024-11120 have been actively exploited against GeoVision DateSetting.cgi endpoints by a Mirai/LZRD family operator, providing hashes for blocklisting.