CVE-2025-12363: Email Password Disclosure
Published Oct 27, 2025
·Updated
Email Password Disclosure.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
Affected Software
6 affected components
BLU BLU-IC2<=1.19.5
BLU BLU-IC4<=1.19.5
All of the following
Azure-access Blu-ic2 Firmware<1.20
Azure-access Blu-ic2
All of the following
Azure-access Blu-ic4 Firmware<1.20
Azure-access Blu-ic4
Event History
Oct 27, 2025
CVE Published
via MITRE·06:04 PM
Data Sourced
via MITRE·06:04 PM
DescriptionWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-12363?
CVE-2025-12363 is classified as a high severity vulnerability due to the risk of email password disclosure.
2
How do I fix CVE-2025-12363?
To mitigate CVE-2025-12363, upgrade BLU-IC2 and BLU-IC4 to versions beyond 1.19.5.
3
What impact does CVE-2025-12363 have on my system?
CVE-2025-12363 allows unauthorized users to gain access to sensitive email credentials.
4
Which software versions are affected by CVE-2025-12363?
CVE-2025-12363 affects BLU-IC2 and BLU-IC4 versions up to and including 1.19.5.
5
Is there a workaround for CVE-2025-12363?
No official workaround exists for CVE-2025-12363; upgrading to a fixed version is the recommended action.