CVE-2026-7371Disclosure(geovision / gv-lpc2011)

LOWCVSS 6.1 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Multiple reflected cross-site scripting (xss) vulnerabilities exist in the Web Interface / ssi.cgi functionality of GeoVision LPC2011/LPC2211 1.10. A specially crafted malicious url can lead to an arbitrary javascript code execution. An attacker can provide a crafted URL to trigger this vulnerability. Reflected XXS via the error message for requesting non-existing page.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-79

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • gv-lpc2011
  • gv-lpc2011_firmware
  • gv-lpc2211
  • gv-lpc2211_firmware

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
gv-lpc2011gv-lpc2011_firmwaregv-lpc2211gv-lpc2211_firmware

2 versions affected across 4 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-05-04: 1Technical Details · 2026-05-04: 105-04
Signal classification1 categories
Disclosure
1100.0%
Referenced assets2 URLs
Full discourse1 post
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7371 Reflected Cross-Site Scripting Vulnerabilities in GeoVision LPC201... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7371 Customizable Vulnerability Alerts: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=4

    Post summary

    The post announces the existence of a Reflected XSS vulnerability (CVE-2026-7371) in GeoVision LPC201, but does not provide any PoC, exploit, patch or evidence of active exploitation.

    0000043
    4.0K followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
HWgeovisiongv-lpc2011---
OSgeovisiongv-lpc2011_firmware1.10--
HWgeovisiongv-lpc2211---
OSgeovisiongv-lpc2211_firmware1.10--

Explore more