logo

Critical Xiongmai IP Camera Flaw Lets Attackers Bypass Authentication and Gain Remote Access

ID: c57616b1-de10-5ece-9de8-85b5f0c6bebb

STIX ID: report--c57616b1-de10-5ece-9de8-85b5f0c6bebb

Feed Name: Cyber Press

Threat Score
80/100

Date Published: 2026-04-24

Date Updated: 2026-04-25

Author: AnuPriya

...
...

A critical authentication-bypass vulnerability (CVE-2025-65856, CVSS 9.8) in Hangzhou Xiongmai XM530 IP cameras allows remote attackers to access sensitive data and manipulate device settings without credentials; CISA disclosed the flaw and urged immediate mitigations after a public proof-of-concept was published, though no active exploitation has been reported.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.