CVE-2025-12217: SNMP Default Community String (public)
Published Oct 25, 2025
·Updated
SNMP Default Community String (public).This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
Affected Software
6 affected components
BLU BLU-IC2<=1.19.5
BLU BLU-IC4<=1.19.5
All of the following
Azure-access Blu-ic2 Firmware<1.20
Azure-access Blu-ic2
All of the following
Azure-access Blu-ic4 Firmware<1.20
Azure-access Blu-ic4
Event History
Oct 25, 2025
CVE Published
via MITRE·03:39 PM
Data Sourced
via MITRE·03:39 PM
DescriptionWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-12217?
CVE-2025-12217 is considered a high severity vulnerability due to its exploitation of default SNMP community strings.
2
How do I fix CVE-2025-12217?
To mitigate CVE-2025-12217, change the default SNMP community string from 'public' to a more secure, unique value.
3
Which software versions are affected by CVE-2025-12217?
CVE-2025-12217 affects BLU-IC2 and BLU-IC4 versions up to and including 1.19.5.
4
What risks are associated with CVE-2025-12217?
The risks associated with CVE-2025-12217 include unauthorized access to SNMP data and potential control over the affected devices.
5
Is there a patch available for CVE-2025-12217?
As of now, no specific patch has been publicly released for CVE-2025-12217, but users are advised to follow best practices for SNMP security.