CVE-2021-47795
Severity CVSS v4.0:
HIGH
Type:
CWE-22
Path Traversal
Publication date:
16/01/2026
Last modified:
16/01/2026
Description
GeoVision GeoWebServer 5.3.3 contains multiple vulnerabilities including local file inclusion, cross-site scripting, and remote code execution through improper input sanitization. Attackers can exploit the WebStrings.srf endpoint by manipulating path traversal and injection parameters to access system files and execute malicious scripts.
Impact
Base Score 4.0
8.70
Severity 4.0
HIGH
Base Score 3.x
6.20
Severity 3.x
MEDIUM



