i-PRO Configuration Tool Hard-Coded Cryptographic Key Vulnerability

Vulnerability

A vulnerability exists in the i-PRO Configuration Tool (iCT) due to the use of hard-coded cryptographic keys. This issue affects the network system for i-PRO Co., Ltd. surveillance cameras and recorders. The vulnerability allows a local authenticated attacker to leverage authentication information from the last connected surveillance devices.

Impact

Exploitation of this vulnerability could enable a local authenticated attacker to access authentication information from previously connected i-PRO surveillance cameras and recorders.

Remediation

Users are advised to update the i-PRO Configuration Tool to version 4.30 or later.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.8
exploitability
3.3
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.