MEDIUM · 5.3

CVE-2024-58336

Akuvox Smart Intercom S539 contains an unauthenticated vulnerability that allows remote attackers to access live video streams by requesting the video.cgi endpoint on port 8080. Attackers can retrieve...

Vulnerability Description

Akuvox Smart Intercom S539 contains an unauthenticated vulnerability that allows remote attackers to access live video streams by requesting the video.cgi endpoint on port 8080. Attackers can retrieve video stream data without authentication by directly accessing the specified endpoint on affected Akuvox doorphone and intercom devices.

CVSS Score

5.3

MEDIUM

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
LOW
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
AkuvoxS539 Firmware912.30.1.137
AkuvoxS539-
AkuvoxS532 Firmware912.30.1.137
AkuvoxS532-
AkuvoxX916 Firmware912.30.1.137
AkuvoxX916-
AkuvoxX915 Firmware912.30.1.137
AkuvoxX915-
AkuvoxX912 Firmware912.30.1.137
AkuvoxX912-
AkuvoxR29 Firmware912.30.1.137
AkuvoxR29-
AkuvoxR20K-2 Firmware912.30.1.137
AkuvoxR20K-2-
AkuvoxR20A-2 Firmware912.30.1.137
AkuvoxR20A-2-
AkuvoxC313W-2 Firmware912.30.1.137
AkuvoxC313W-2-
AkuvoxNs-2 Firmware912.30.1.137
AkuvoxNs-2-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2024-58336?

CVE-2024-58336 is a vulnerability with a CVSS score of 5.3 (MEDIUM). Akuvox Smart Intercom S539 contains an unauthenticated vulnerability that allows remote attackers to access live video streams by requesting the video.cgi endpoint on port 8080. Attackers can retrieve...

How severe is CVE-2024-58336?

CVE-2024-58336 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2024-58336?

Check the references section above for vendor advisories and patch information. Affected products include: Akuvox S539 Firmware, Akuvox S539, Akuvox S532 Firmware, Akuvox S532, Akuvox X916 Firmware.