Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.9

CVE-2026-42368: GeoVision LPC2011/LPC2211 Web Interface Allows Unauthorized Privilege Escalation

CVE-2026-42368
Summary

A hacker can use a specially crafted web request to gain elevated access to the GeoVision LPC2011/LPC2211 system. This could allow them to perform actions they shouldn't be able to do. Update the system to the latest version to fix this issue.

Original title
A privilege escalation vulnerability exists in the Web Interface functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted HTTP request can lead to execute priviledged operation. An atta...
Original description
A privilege escalation vulnerability exists in the Web Interface functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted HTTP request can lead to execute priviledged operation. An attacker can visit a webpage to trigger this vulnerability.
nvd CVSS3.1 9.9
Vulnerability type
CWE-266 Incorrect Privilege Assignment
Published: 4 May 2026 · Updated: 28 May 2026 · First seen: 4 May 2026