CVE-2025-7742

HIGH

LG Innotek camera model LNV5110R - RCE

Title source: llm
STIX 2.1

Description

An authentication vulnerability exists in the LG Innotek camera model LNV5110R firmware that allows a malicious actor to upload an HTTP POST request to the devices non-volatile storage. This action may result in remote code execution that allows an attacker to run arbitrary commands on the target device at the administrator privilege level.

Scores

CVSS v4 8.3
EPSS 0.0039
EPSS Percentile 60.2%
CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:N/VC:H/VI:L/VA:L/SC:N/SI:N/SA:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-288
Status published
Products (1)
LG Innotek/Camera Model LNV5110R All
Published Jul 25, 2025
Tracked Since Feb 18, 2026