Access Control Flaw in Reolink Smart 2K+ Doorbell
CVE-2025-55634
7.5HIGH
What is CVE-2025-55634?
The Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime is subject to an access control vulnerability in its RTMP server settings. This issue allows unauthorized attackers to exploit the system by initiating numerous simultaneous ffmpeg-based stream pushes, which can lead to a Denial of Service (DoS). This vulnerability highlights the importance of robust access control measures to prevent unauthorized interactions with video streaming services.
