CVE-2025-11832: APIs Lack Rate Limiting
Published Oct 15, 2025
·Updated
Allocation of Resources Without Limits or Throttling vulnerability in Azure Access Technology BLU-IC2, Azure Access Technology BLU-IC4 allows Flooding.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
Affected Software
6 affected components
Microsoft Azure Access Technology BLU-IC2<=1.19.5
Microsoft Azure Access Technology BLU-IC4<=1.19.5
All of the following
Azure-access Blu-ic2 Firmware<1.20
Azure-access Blu-ic2
All of the following
Azure-access Blu-ic4 Firmware<1.20
Azure-access Blu-ic4
Event History
Oct 15, 2025
CVE Published
via MITRE·07:10 PM
Data Sourced
via MITRE·07:10 PM
DescriptionWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-11832?
CVE-2025-11832 is considered a significant vulnerability due to its potential for resource flooding.
2
How do I fix CVE-2025-11832?
To mitigate CVE-2025-11832, upgrade Azure Access Technology BLU-IC2 and BLU-IC4 to versions above 1.19.5.
3
Which versions of Azure Access Technology are affected by CVE-2025-11832?
CVE-2025-11832 affects Azure Access Technology BLU-IC2 and BLU-IC4 versions up to and including 1.19.5.
4
What types of attacks can CVE-2025-11832 lead to?
CVE-2025-11832 can lead to flooding attacks that may compromise the performance of affected services.
5
Is there a public advisory for CVE-2025-11832?
Yes, there are security advisories available that detail the risks and remediation steps for CVE-2025-11832.