CareCam Pro IP Cameras
MonitorCVSS 6.8ICS-CERT ICSA-26-251-01Sep 8, 2026
Attack path
Attack VectorPhysical
Auth RequiredNone
ComplexityLow
User InteractionNone needed
Summary
The ANJIA AJL33PC0801 IP camera (CareCam Pro) contains hardcoded credentials in its firmware (CWE-798). Successful exploitation allows an attacker to take full control of the device. CareCam has not responded to CISA coordination attempts and no security update is currently available.
What this means
What could happen
An attacker with physical access to the camera or who can intercept its network traffic could extract hardcoded credentials and gain full control of the device, potentially disabling surveillance or manipulating recorded footage in sensitive facilities.
Who's at risk
Water authorities, municipal utilities, and any facility relying on ANJIA AJL33PC0801 IP cameras (branded as CareCam Pro) for surveillance of physical infrastructure, control rooms, or pump stations. This includes any camera used for monitoring critical operational areas where footage integrity or availability is important for security or forensics.
How it could be exploited
The device contains hardcoded credentials (CWE-798). An attacker who gains access to the device firmware—either through physical access to extract it or by intercepting unencrypted network communications—can obtain these credentials and use them to authenticate as an administrator, gaining full control over the camera's operation and recordings.
Prerequisites
- Physical access to extract or read device firmware, OR
- Network access to intercept or capture unencrypted firmware communications
- Ability to decode or extract credentials from firmware binary
Hardcoded credentials in firmwareNo vendor response or patch coordinationAffects surveillance systems protecting critical infrastructure
Exploitability
Unlikely to be exploited — EPSS score 0.3%
Affected products (1)
ProductAffected VersionsFix Status
ANJIA AJL33PC0801 Firmware: linux_linux_202008261138_svn13796_/_Bootloader_U-Boot_2010.06_compiled_2020-08-26linux linux 202008261138 svn13796 / Bootloader U-Boot 2010.06 compiled 2020-08-26No fix yet
Remediation & Mitigation
0/4
Do now
0/2WORKAROUNDRestrict network access to cameras using firewall rules to only required management ports and block lateral movement from camera network to critical systems
WORKAROUNDDocument all CareCam camera locations and firmware versions; contact CareCam support to inquire about available security patches or firmware updates
Long-term hardening
0/2HARDENINGIsolate CareCam cameras to a separate, monitored network segment with no direct internet access
HARDENINGMonitor camera management interfaces and log access to detect unauthorized authentication attempts or configuration changes
CVEs (1)
↑↓ Navigate · Esc Close
API:
/api/v1/advisories/809e3bfa-d00c-4ec1-91db-1dcd08a6d220Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.