Description
Authentication bypass vulnerability in Xiongmai XM530 IP cameras on Firmware V5.00.R02.000807D8.10010.346624.S.ONVIF 21.06 allows unauthenticated remote attackers to access sensitive device information and live video streams. The ONVIF implementation fails to enforce authentication on 31 critical endpoints, enabling direct unauthorized video stream access.
INFO
Published Date :
2025-12-22T00:00:00.000Z
Last Modified :
2025-12-22T21:22:15.447Z
Source :
mitre
AFFECTED PRODUCTS
The following products are affected by CVE-2025-65856 vulnerability.
| Vendors | Products |
|---|---|
| Xiongmaitech |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2025-65856.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact