Critical Xiongmai IP Camera Flaw Lets Attackers Bypass Authentication and Gain Remote Access
ID: c57616b1-de10-5ece-9de8-85b5f0c6bebb
STIX ID: report--c57616b1-de10-5ece-9de8-85b5f0c6bebb
Feed Name: Cyber Press
Threat Score
A critical authentication-bypass vulnerability (CVE-2025-65856, CVSS 9.8) in Hangzhou Xiongmai XM530 IP cameras allows remote attackers to access sensitive data and manipulate device settings without credentials; CISA disclosed the flaw and urged immediate mitigations after a public proof-of-concept was published, though no active exploitation has been reported.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
