CVE-2024-56903

High severity, CVSS 8.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Geovision GV-ASWeb with the version 6.1.1.0 or less allows attackers to modify POST request method with the GET against critical functionalities, such as account management. This vulnerability is used in chain with CVE-2024-56901 for a successful CSRF attack.

Published 2025-02-03. Last modified 2026-06-17.