Loading
Reolink v4.54.0.4.20250526 was discovered to contain a hardcoded encryption key and initialization vector. An attacker can leverage this vulnerability to decrypt access tokens and web session tokens stored inside the app via reverse engineering.
Use CWE-321, Reolink vendor hub and Reolink product page to widen CVE-2025-55619 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-56799, CVE-2025-55622 and CVE-2025-55621 for nearby disclosures in the same product family.