CVE-2025-12278: Logout Functionality not Working
Published Oct 26, 2025
·Updated
Logout Functionality not Working.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
Affected Software
6 affected components
BLU IC2<=1.19.5
BLU IC4<=1.19.5
All of the following
Azure-access Blu-ic2 Firmware<1.20
Azure-access Blu-ic2
All of the following
Azure-access Blu-ic4 Firmware<1.20
Azure-access Blu-ic4
Event History
Oct 26, 2025
CVE Published
via MITRE·04:14 PM
Data Sourced
via MITRE·04:14 PM
DescriptionWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-12278?
CVE-2025-12278 is classified as a medium severity vulnerability due to the compromised logout functionality.
2
How do I fix CVE-2025-12278?
To mitigate CVE-2025-12278, update the BLU IC2 and IC4 to versions later than 1.19.5 where the logout functionality is addressed.
3
Which versions are affected by CVE-2025-12278?
CVE-2025-12278 affects BLU IC2 and IC4 up to version 1.19.5.
4
What impact does CVE-2025-12278 have on user security?
CVE-2025-12278 may allow users to remain logged in despite attempts to log out, potentially exposing sensitive information.
5
Is there a workaround for CVE-2025-12278?
Currently, there are no known workarounds for CVE-2025-12278 beyond upgrading to a secure version.