CVE-2025-12219
BaseFortify
Publication date: 2025-10-25
Last updated on: 2025-11-10
Assigner: azure-access
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| azure-access | blu-ic2_firmware | to 1.20 (exc) |
| azure-access | blu-ic2 | * |
| azure-access | blu-ic4_firmware | to 1.20 (exc) |
| azure-access | blu-ic4 | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-NVD-CWE-noinfo |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability affects certain versions of Azure Access OS components BLU-IC2 and BLU-IC4 up to version 1.19.5. It is a critical security issue with a maximum CVSS score of 10.0, indicating it can be exploited remotely without any privileges or user interaction, and it has a high impact on confidentiality, integrity, and availability.
How can this vulnerability impact me? :
The vulnerability can have a severe impact as it allows an attacker to remotely exploit the affected components without any privileges or user interaction, potentially leading to complete compromise of confidentiality, integrity, and availability of the system.