CVE-2025-12600
BaseFortify
Publication date: 2025-11-01
Last updated on: 2025-11-10
Assigner: azure-access
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| azure-access | blu-ic2_firmware | to 1.20 (exc) |
| azure-access | blu-ic2 | * |
| azure-access | blu-ic4_firmware | to 1.20 (exc) |
| azure-access | blu-ic4 | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-NVD-CWE-noinfo | |
| CWE-730 |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is a Web UI malfunction that occurs when an unexpected locale is set via the API in affected BLU-IC2 and BLU-IC4 versions up to 1.19.5. Essentially, the user interface does not handle certain locale settings properly, which can lead to malfunctioning behavior.
How can this vulnerability impact me? :
The impact of this vulnerability is severe, as indicated by the CVSS score of 10.0. It can cause the web user interface to malfunction, potentially leading to denial of service or other critical issues that affect availability, integrity, and confidentiality of the system.