PT-2025-43754 · Blu-Ic2+1 · Blu-Ic2+1

Alexi Bitsios

+4

·

Published

2025-10-26

·

Updated

2025-10-26

·

CVE-2025-12284

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L
Name of the Vulnerable Software and Affected Versions BLU-IC2 versions through 1.19.5 BLU-IC4 versions through 1.19.5
Description A lack of input validation in the web user interface could allow for potential exploitation. The issue affects the web UI component.
Recommendations Update BLU-IC2 to a version later than 1.19.5. Update BLU-IC4 to a version later than 1.19.5.

Fix

XSS

RCE

Weakness Enumeration

Related Identifiers

CVE-2025-12284

Affected Products

Blu-Ic2
Blu-Ic4