Critical Vulnerability in Xiongmai IP Cameras Allows Remote Access
Article Content
- •CVE-2025-65856 allows attackers to bypass authentication on XM530 IP Cameras.
- •CISA issued an alert on April 23, 2026, emphasizing the critical nature of the vulnerability.
- •Organizations are advised to take immediate action to secure affected devices.
A critical vulnerability has been discovered in Hangzhou Xiongmai Technology’s XM530 IP Cameras, tracked as CVE-2025-65856. This flaw enables attackers to bypass authentication protocols, granting them remote access to the cameras and potentially sensitive information. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an alert on April 23, 2026, highlighting the severity of the issue. The vulnerability affects numerous commercial facilities that utilize these cameras, raising concerns about unauthorized surveillance and data breaches. The flaw was first publicly disclosed in December 2025, with a proof of concept (PoC) released shortly before. Organizations using these cameras are urged to take immediate action to mitigate risks. The scope of the impact is significant, given the widespread deployment of these devices in various sectors.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Hangzhou Xiongmai Technology and CVE-2025-65856 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…