---
id: CVE-2025-4994
title: >-
  The SafeLine SL6 and SL6+ devices integrated into elevator emergency intercom
  systems are vulnerable to an authentication bypass
summary: >-
  The SafeLine SL6 and SL6+ devices integrated into elevator emergency intercom
  systems are vulnerable to an authentication bypass. This vulnerability allows
  attackers to bypass authentication requirements and access the device's
  configura…
severity: none
cwe:
  - CWE-305
published: '2026-06-22'
updated: '2026-07-07'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-4994'
references:
  - url: 'https://www.schutzwerk.com/en/blog/schutzwerk-sa-2025-001/'
    label: 23637b5d-af4c-4cf9-b8f6-deb7fd0f8423
  - url: 'http://seclists.org/fulldisclosure/2026/Jul/17'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.00331
epssPercentile: 0.23533
ingestedAt: '2026-07-07T10:52:44.316Z'
---

## Overview

The SafeLine SL6 and SL6+ devices integrated into elevator emergency intercom systems are vulnerable to an authentication bypass. This vulnerability allows attackers to bypass authentication requirements and access the device's configuration service via the Bluetooth Low Energy (BLE) interface. Consequently, an attacker within wireless range can gain unauthorized administrative access to the device configuration.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
