PT-2025-44006 · Azure Access Technology+1 · Blu-Ic2+3

Alexi Bitsios

+4

·

Published

2025-10-27

·

Updated

2025-10-27

·

CVE-2025-12365

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L
Name of the Vulnerable Software and Affected Versions BLU-IC2 versions prior to 1.19.6 BLU-IC4 versions prior to 1.19.6
Description Error messages are wrapped in the HTTP header.
Recommendations Update BLU-IC2 to version 1.19.6 or later. Update BLU-IC4 to version 1.19.6 or later.

Fix

Generation of Error Message Containing Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2025-12365

Affected Products

Blu-Ic2
Blu-Ic4
Blu-Ic2 Firmware
Blu-Ic4 Firmware