Skip to main content

CVE-2024-25731

Description

The Elink Smart eSmartCam (com.cn.dq.ipc) application 2.1.5 for Android contains hardcoded AES encryption keys that can be extracted from a binary file. Thus, encryption can be defeated by an attacker who can observe packet data (e.g., over Wi-Fi).

NVD
Severity: N/A
CVE ID: CVE-2024-25731
CVSS Score: N/A
CVSS Metrics: NVD assessment not yet provided.

Refrence: NVDMITRE

Proof Of Concept

actuator

CVE-2024-25731

Refrence: GitHub