Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-52601— Hardcoding sensitive information

EPSS 0.01% · P0
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2025-52601

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Hardcoding sensitive information
Source: NVD (National Vulnerability Database)
Vulnerability Description
Cybersecurity Nozomi Networks Labs, a specialized security company focused on Industrial Control Systems (ICS) and OT/IoT security, has discovered a vulnerability in Device Manager that a hardcoded encryption key for sensitive information. An attacker can use key to decrypt sensitive information. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
使用硬编码的密码学密钥
Source: NVD (National Vulnerability Database)
Vulnerability Title
Hanwha Vision IP Cameras 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Hanwha Vision IP Cameras是韩国Hanwha Vision公司的一系列网络摄像头。 Hanwha Vision IP Cameras 存在安全漏洞,该漏洞源于Device Manager中对敏感信息使用硬编码加密密钥,攻击者可利用密钥解密敏感信息。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
Hanwha Vision Co., Ltd.Device Manager prior to version 2.9.3.1 -

II. Public POCs for CVE-2025-52601

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2025-52601

登录查看更多情报信息。

Same Patch Batch · Hanwha Vision Co., Ltd. · 2025-12-26 · 5 CVEs total

CVE-2025-52600Improper Input Validation
CVE-2025-52599Inadequate account permissions management
CVE-2025-52598Insufficient certificate validation
CVE-2025-8075Improper Input Validation

IV. Related Vulnerabilities

V. Comments for CVE-2025-52601

No comments yet


Leave a comment