i-PRO Configuration Tool Hard-Coded Cryptographic Key Vulnerability
Vulnerability
A vulnerability exists in the i-PRO Configuration Tool (iCT) due to the use of hard-coded cryptographic keys. This issue affects the network system for i-PRO Co., Ltd. surveillance cameras and recorders. The vulnerability allows a local authenticated attacker to leverage authentication information from the last connected surveillance devices.
Impact
Exploitation of this vulnerability could enable a local authenticated attacker to access authentication information from previously connected i-PRO surveillance cameras and recorders.
Remediation
Users are advised to update the i-PRO Configuration Tool to version 4.30 or later.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
