CVE-2025-12599: Multiple Devices are Sharing the Same Secrets for SDKSocket (TCP/5000)
Published Nov 1, 2025
·Updated
Multiple Devices are Sharing the Same Secrets for SDKSocket (TCP/5000).This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5.
Affected Software
6 affected components
BLU BLU-IC2<1.19.5
BLU BLU-IC4<1.19.5
All of the following
Azure-access Blu-ic2 Firmware<1.20
Azure-access Blu-ic2
All of the following
Azure-access Blu-ic4 Firmware<1.20
Azure-access Blu-ic4
Event History
Nov 1, 2025
CVE Published
via MITRE·06:39 PM
Data Sourced
via MITRE·06:39 PM
DescriptionWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-12599?
CVE-2025-12599 is considered a medium severity vulnerability due to the potential exposure of sensitive information across multiple devices.
2
How do I fix CVE-2025-12599?
To mitigate CVE-2025-12599, update all affected devices to versions beyond 1.19.5.
3
What devices are affected by CVE-2025-12599?
CVE-2025-12599 affects the BLU-IC2 and BLU-IC4 devices running version 1.19.5 or earlier.
4
What type of vulnerability is CVE-2025-12599?
CVE-2025-12599 is a vulnerability that involves multiple devices sharing the same secrets for SDKSocket on TCP port 5000.
5
What impact does CVE-2025-12599 have on users?
Users of impacted devices may face unauthorized access to sensitive data due to the shared secrets vulnerability.