CVE-2026-89173: Kingdom Communication Associated EH1000B
Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.
Smart Video Intercom System developed by Kingdom Communication Associated has a Sensitive Data Exposure vulnerability. Unauthenticated remote attackers can enumerate valid user accounts by exploiting differences in system responses.
Affected products
- Kingdom Communication Associated EH1000B: before 2.7.0A (fixed in 2.7.0A)
- Kingdom Communication Associated EH2070: before 2.8.0A (fixed in 2.8.0A)
- Kingdom Communication Associated EH3040: before 2.5.0A (fixed in 2.5.0A)
- Kingdom Communication Associated EH4200: before 2.5.0A (fixed in 2.5.0A)
Published 2026-09-11. Last modified 2026-09-11.