CVE-2024-45837: Aiphone Co., Ltd Ix-BA
Medium severity, CVSS 5.4. EPSS: 0.3% chance of exploitation in the next 30 days.
Use of hard-coded cryptographic key issue exists in AIPHONE IX SYSTEM, IXG SYSTEM, and System Support Software. A network-adjacent unauthenticated attacker may log in to SFTP service and obtain and/or manipulate unauthorized files.
Affected products
- Aiphone Co., Ltd Ix-BA: up to and including 7.30
- Aiphone Co., Ltd Ix-Bau: up to and including 7.30
- Aiphone Co., Ltd Ix-Bb: up to and including 7.30
- Aiphone Co., Ltd Ix-Bbt: up to and including 7.30
- Aiphone Co., Ltd Ix-Bu: up to and including 7.30
- Aiphone Co., Ltd Ix-Da: up to and including 7.30
- Aiphone Co., Ltd Ix-Dau: up to and including 7.30
- Aiphone Co., Ltd Ix-DB: up to and including 7.30
- Aiphone Co., Ltd Ix-Dbt: up to and including 7.30
- Aiphone Co., Ltd Ix-Du: up to and including 7.30
- Aiphone Co., Ltd Ix-Dv: up to and including 7.30
- Aiphone Co., Ltd Ix-Dvf: up to and including 7.30
- Aiphone Co., Ltd Ix-Dvf-2ra: up to and including 7.30
- Aiphone Co., Ltd Ix-Dvf-L: up to and including 7.30
- Aiphone Co., Ltd Ix-Dvf-P: up to and including 7.30
- Aiphone Co., Ltd Ix-Dvf-Ra: up to and including 7.30
- Aiphone Co., Ltd Ix-Dvm: up to and including 7.30
- Aiphone Co., Ltd Ix-Dvt: up to and including 7.30
- Aiphone Co., Ltd Ix-Ea: up to and including 7.30
- Aiphone Co., Ltd Ix-Eat: up to and including 7.30
- Aiphone Co., Ltd Ix-Eau: up to and including 7.30
- Aiphone Co., Ltd Ix-Fa: up to and including 7.30
- Aiphone Co., Ltd Ix-Mv: up to and including 7.30
- Aiphone Co., Ltd Ix-MV7-B: up to and including 7.31
- Aiphone Co., Ltd Ix-MV7-Bt: up to and including 7.31
- and 31 more
Published 2024-11-22. Last modified 2026-06-17.