Unauthenticated Remote Access Vulnerability in Akuvox Smart Intercom S539
CVE-2024-58336
Key Information:
- Vendor
The Akuvox Company
- Vendor
- CVE Published:
- 30 December 2025
Badges
What is CVE-2024-58336?
The Akuvox Smart Intercom S539 is exposed to a serious vulnerability that permits unauthorized users to access live video feeds. By sending a request to the video.cgi endpoint on port 8080, attackers can obtain sensitive video stream data without any form of authentication. This flaw compromises the privacy and security of users, making it crucial for device owners to address this vulnerability promptly.
Affected Version(s)
Akuvox Smart Doorphone S539
Akuvox Smart Doorphone S532
Akuvox Smart Doorphone X916
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
