HarborGuard / CVE
Back to search
HIGHCVE-2026-42365Published Modified CNA GV

CVE-2026-42365: GeoVision LPC2011/LPC2211 Web Interface guessable session cookie vulnerability

A guessable session cookie vulnerability exists in the Web Interface functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted series of HTTP requests can lead to an authentication bypas. An attacker can bruteforce session cookies to trigger this vulnerability.

Metrics

CVSS v3.1
8.6
Severity
HIGH
Fixed in
1.12
Affected Products
1

Fix available

1.12
Affected packages
  • GeoVision Inc. / GV-LPC2011/LPC2211
    1.10
    Fixed in 1.12
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N