Vendor Products CVEs KEV Avg EPSS Worst Severity 2 39 0 18.6% CRITICAL
CVE ID Description Severity CVSS KEV EPSS Published CVE-2025-12603 /etc/timezone can be Arbitrarily Written.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. LOW 2.3 — 16.1% Nov 1, 2025 CVE-2025-12602 /etc/avahi/services/z9.service can be Arbitrarily Written.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. LOW 2.3 — 16.1% Nov 1, 2025 CVE-2025-12601 Denial of Service Due to SlowLoris.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. CRITICAL 10.0 — 19.6% Nov 1, 2025 CVE-2025-12600 Web UI Malfunction when setting unexpected locale via API.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. CRITICAL 10.0 — 22.4% Nov 1, 2025 CVE-2025-12599 Multiple Devices are Sharing the Same Secrets for SDKSocket (TCP/5000).This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. CRITICAL 10.0 — 31.2% Nov 1, 2025 CVE-2025-12554 Missing Security Headers.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. MEDIUM 6.9 — 25.5% Oct 31, 2025 CVE-2025-12553 Email Server Certificate Verification Disabled.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. CRITICAL 10.0 — 10.0% Oct 31, 2025 CVE-2025-12552 Insufficient Password Policy.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. MEDIUM 6.9 — 22.9% Oct 31, 2025 CVE-2025-12517 Credits Page not Matching Versions in Use in the FirmwareThis issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . LOW 2.1 — 8.7% Oct 30, 2025 CVE-2025-12516 Lack of Graceful Error Handling - HTTP 5xx ErrorThis issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . CRITICAL 10.0 — 25.5% Oct 30, 2025 CVE-2025-12515 Systemic Internal Server Errors - HTTP 500 ResponseThis issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . CRITICAL 10.0 — 25.5% Oct 30, 2025 CVE-2025-12479 Systemic Lack of Cross-Site Request Forgery (CSRF) Token Implementation.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . CRITICAL 10.0 — 5.1% Oct 29, 2025 CVE-2025-12478 Non-Compliant TLS Configuration.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . CRITICAL 10.0 — 12.5% Oct 29, 2025 CVE-2025-12477 Server Version Disclosure.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . CRITICAL 10.0 — 23.4% Oct 29, 2025 CVE-2025-12476 Resource Lacking AuthN.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . CRITICAL 10.0 — 22.9% Oct 29, 2025 CVE-2025-12425 Local Privilege Escalation.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . CRITICAL 10.0 — 9.8% Oct 28, 2025 CVE-2025-12424 Privilege Escalation through SUID-bit Binary.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . CRITICAL 10.0 — 22.9% Oct 28, 2025 CVE-2025-12423 Protocol manipulation might lead to denial of service.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5 . CRITICAL 10.0 — 22.1% Oct 28, 2025 CVE-2025-12422 Vulnerable Upgrade Feature (Arbitrary File Write) may lead to obtaining super user permissions on board.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. CRITICAL 10.0 — 35.3% Oct 28, 2025 CVE-2025-12365 Error Messages Wrapped In HTTP Header.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5. MEDIUM 6.9 — 13.6% Oct 27, 2025
Show all 39 CVEs