CVE-2026-42365: GeoVision Gv-LPC2011 Firmware
High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.
A guessable session cookie vulnerability exists in the Web Interface functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted series of HTTP requests can lead to an authentication bypas. An attacker can bruteforce session cookies to trigger this vulnerability.
Affected products
Published 2026-05-04. Last modified 2026-06-17.