Akuvox Smart Intercom S539 contains an unauthenticated vulnerability that allows remote attackers to access live video streams by requesting the video.cgi endpoint on port 8080. Attackers can retrieve video stream data without authentication by directly accessing the specified endpoint on affected Akuvox doorphone and intercom devices.
History

Tue, 13 Jan 2026 21:45:00 +0000

Type Values Removed Values Added
First Time appeared Akuvox c313w-2
Akuvox c313w-2 Firmware
Akuvox nc-2
Akuvox nc-2 Firmware
Akuvox ns-2
Akuvox ns-2 Firmware
Akuvox nx-2
Akuvox nx-2 Firmware
Akuvox r20a-2
Akuvox r20a-2 Firmware
Akuvox r20k-2
Akuvox r20k-2 Firmware
Akuvox r29
Akuvox r29 Firmware
Akuvox s532
Akuvox s532 Firmware
Akuvox s539
Akuvox s539 Firmware
Akuvox x912
Akuvox x912 Firmware
Akuvox x915
Akuvox x915 Firmware
Akuvox x916
Akuvox x916 Firmware
CPEs cpe:2.3:h:akuvox:c313w-2:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:nc-2:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:ns-2:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:nx-2:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:r20a-2:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:r20k-2:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:r29:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:s532:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:s539:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:x912:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:x915:-:*:*:*:*:*:*:*
cpe:2.3:h:akuvox:x916:-:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:c313w-2_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:nc-2_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:ns-2_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:nx-2_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:r20a-2_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:r20k-2_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:r29_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:s532_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:s539_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:x912_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:x915_firmware:912.30.1.137:*:*:*:*:*:*:*
cpe:2.3:o:akuvox:x916_firmware:912.30.1.137:*:*:*:*:*:*:*
Vendors & Products Akuvox c313w-2
Akuvox c313w-2 Firmware
Akuvox nc-2
Akuvox nc-2 Firmware
Akuvox ns-2
Akuvox ns-2 Firmware
Akuvox nx-2
Akuvox nx-2 Firmware
Akuvox r20a-2
Akuvox r20a-2 Firmware
Akuvox r20k-2
Akuvox r20k-2 Firmware
Akuvox r29
Akuvox r29 Firmware
Akuvox s532
Akuvox s532 Firmware
Akuvox s539
Akuvox s539 Firmware
Akuvox x912
Akuvox x912 Firmware
Akuvox x915
Akuvox x915 Firmware
Akuvox x916
Akuvox x916 Firmware

Mon, 05 Jan 2026 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Akuvox
Akuvox smart Doorphone
Akuvox smart Intercom
Vendors & Products Akuvox
Akuvox smart Doorphone
Akuvox smart Intercom

Fri, 02 Jan 2026 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 30 Dec 2025 23:00:00 +0000

Type Values Removed Values Added
Description Akuvox Smart Intercom S539 contains an unauthenticated vulnerability that allows remote attackers to access live video streams by requesting the video.cgi endpoint on port 8080. Attackers can retrieve video stream data without authentication by directly accessing the specified endpoint on affected Akuvox doorphone and intercom devices.
Title Akuvox Smart Intercom S539 Unauthenticated Video Stream Disclosure
Weaknesses CWE-306
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published: 2025-12-30T22:41:44.569Z

Updated: 2026-01-02T14:39:05.787Z

Reserved: 2025-12-26T17:10:59.893Z

Link: CVE-2024-58336

cve-icon Vulnrichment

Updated: 2026-01-02T14:24:49.360Z

cve-icon NVD

Status : Analyzed

Published: 2025-12-30T23:15:48.880

Modified: 2026-01-13T21:31:32.360

Link: CVE-2024-58336

cve-icon Redhat

No data.