CVE-2025-12425: Local Privilege Escalation
Published Oct 28, 2025
·Updated
Local Privilege Escalation.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 .
Affected Software
6 affected components
BLU BLU-IC2<=1.19.5
BLU BLU-IC4<=1.19.5
All of the following
Azure-access Blu-ic2 Firmware<1.20
Azure-access Blu-ic2
All of the following
Azure-access Blu-ic4 Firmware<1.20
Azure-access Blu-ic4
Event History
Oct 28, 2025
CVE Published
via MITRE·06:21 PM
Data Sourced
via MITRE·06:21 PM
DescriptionWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-12425?
CVE-2025-12425 has been classified as a local privilege escalation vulnerability that can significantly impact affected systems.
2
How do I fix CVE-2025-12425?
To mitigate CVE-2025-12425, users should upgrade to the latest versions of BLU-IC2 and BLU-IC4 beyond version 1.19.5.
3
Which software versions are affected by CVE-2025-12425?
CVE-2025-12425 affects BLU-IC2 and BLU-IC4 through version 1.19.5.
4
What should I do if I cannot immediately upgrade to fix CVE-2025-12425?
If you cannot upgrade immediately, consider implementing strict access controls and monitoring for suspicious activities until a fix is applied.
5
Is there a workaround for CVE-2025-12425?
Currently, there are no known workarounds for CVE-2025-12425 other than upgrading to safe versions.