CVE-2025-12275: Mail Configuration File Manipulation + Command Execution
Published Oct 26, 2025
·Updated
Mail Configuration File Manipulation + Command Execution.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
Affected Software
6 affected components
BLU BLU-IC2<=1.19.5
BLU BLU-IC4<=1.19.5
All of the following
Azure-access Blu-ic2 Firmware<1.20
Azure-access Blu-ic2
All of the following
Azure-access Blu-ic4 Firmware<1.20
Azure-access Blu-ic4
Event History
Oct 26, 2025
CVE Published
via MITRE·04:15 PM
Data Sourced
via MITRE·04:15 PM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-12275?
The severity of CVE-2025-12275 is critical due to the potential for command execution and manipulation of mail configuration files.
2
How do I fix CVE-2025-12275?
To fix CVE-2025-12275, update your BLU-IC2 and BLU-IC4 to version 1.19.6 or later.
3
What systems are affected by CVE-2025-12275?
CVE-2025-12275 affects BLU-IC2 and BLU-IC4 up to version 1.19.5.
4
What vulnerabilities does CVE-2025-12275 introduce?
CVE-2025-12275 introduces vulnerabilities that allow attackers to manipulate mail configuration files and potentially execute unauthorized commands.
5
Is CVE-2025-12275 related to specific software versions?
Yes, CVE-2025-12275 specifically affects BLU-IC2 and BLU-IC4 versions up to and including 1.19.5.