CVE-2025-32730

CVSS 3.0 Score 5.5 of 10 (medium)

Details

Published Apr 24, 2025
Updated: Apr 29, 2025
CWE ID 321

Summary

CVE-2025-32730 is a vulnerability affecting the i-PRO Configuration Tool used by i-PRO Co., Ltd. for their surveillance cameras and recorders. The issue involves the use of a hard-coded cryptographic key, making it possible for a local, authenticated attacker to bypass the authentication process. By leveraging the authentication information from the last connected devices, the attacker can gain unauthorized access to the network system. This vulnerability poses a significant risk to the security of the targeted surveillance systems.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share