Akuvox Smart Intercom S539 contains an improper access control vulnerability that allows users with 'User' privileges to modify API access settings and configurations. Attackers can exploit this vulnerability to escalate privileges and gain unauthorized access to administrative functionalities.
History

Mon, 05 Jan 2026 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Akuvox
Akuvox smart Doorphone
Akuvox smart Intercom
Vendors & Products Akuvox
Akuvox smart Doorphone
Akuvox smart Intercom

Fri, 02 Jan 2026 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 30 Dec 2025 23:00:00 +0000

Type Values Removed Values Added
Description Akuvox Smart Intercom S539 contains an improper access control vulnerability that allows users with 'User' privileges to modify API access settings and configurations. Attackers can exploit this vulnerability to escalate privileges and gain unauthorized access to administrative functionalities.
Title Akuvox Smart Intercom S539 Improper Access Control via ServicesHTTPAPI
Weaknesses CWE-862
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published: 2025-12-30T22:41:44.989Z

Updated: 2026-01-02T14:38:57.652Z

Reserved: 2025-12-26T17:10:59.894Z

Link: CVE-2024-58337

cve-icon Vulnrichment

Updated: 2026-01-02T14:24:39.962Z

cve-icon NVD

Status : Undergoing Analysis

Published: 2025-12-30T23:15:49.060

Modified: 2026-01-02T15:15:57.277

Link: CVE-2024-58337

cve-icon Redhat

No data.