File tree Expand file tree Collapse file tree 6 files changed +210
-0
lines changed
advisories/unreviewed/2025/10 Expand file tree Collapse file tree 6 files changed +210
-0
lines changed Original file line number Diff line number Diff line change 1+ {
2+ "schema_version" : " 1.4.0" ,
3+ "id" : " GHSA-6v8w-33wg-8gw2" ,
4+ "modified" : " 2025-10-25T18:30:11Z" ,
5+ "published" : " 2025-10-25T18:30:11Z" ,
6+ "aliases" : [
7+ " CVE-2025-12216"
8+ ],
9+ "details" : " Malicious / Malformed App can be Installed but not Uninstalled/may lead to unavailability.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5." ,
10+ "severity" : [
11+ {
12+ "type" : " CVSS_V4" ,
13+ "score" : " CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
14+ }
15+ ],
16+ "affected" : [],
17+ "references" : [
18+ {
19+ "type" : " ADVISORY" ,
20+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-12216"
21+ },
22+ {
23+ "type" : " WEB" ,
24+ "url" : " https://azure-access.com/security-advisories"
25+ }
26+ ],
27+ "database_specific" : {
28+ "cwe_ids" : [
29+ " CWE-1301"
30+ ],
31+ "severity" : " CRITICAL" ,
32+ "github_reviewed" : false ,
33+ "github_reviewed_at" : null ,
34+ "nvd_published_at" : " 2025-10-25T16:15:39Z"
35+ }
36+ }
Original file line number Diff line number Diff line change 1+ {
2+ "schema_version" : " 1.4.0" ,
3+ "id" : " GHSA-7998-f3xj-xgh3" ,
4+ "modified" : " 2025-10-25T18:30:12Z" ,
5+ "published" : " 2025-10-25T18:30:12Z" ,
6+ "aliases" : [
7+ " CVE-2025-12221"
8+ ],
9+ "details" : " Busybox 1.31.1 - Multiple Known Vulnerabilities.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5." ,
10+ "severity" : [
11+ {
12+ "type" : " CVSS_V4" ,
13+ "score" : " CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:P/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
14+ }
15+ ],
16+ "affected" : [],
17+ "references" : [
18+ {
19+ "type" : " ADVISORY" ,
20+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-12221"
21+ },
22+ {
23+ "type" : " WEB" ,
24+ "url" : " https://azure-access.com/security-advisories"
25+ }
26+ ],
27+ "database_specific" : {
28+ "cwe_ids" : [],
29+ "severity" : " LOW" ,
30+ "github_reviewed" : false ,
31+ "github_reviewed_at" : null ,
32+ "nvd_published_at" : " 2025-10-25T16:15:40Z"
33+ }
34+ }
Original file line number Diff line number Diff line change 1+ {
2+ "schema_version" : " 1.4.0" ,
3+ "id" : " GHSA-7hmv-fvpj-wq57" ,
4+ "modified" : " 2025-10-25T18:30:11Z" ,
5+ "published" : " 2025-10-25T18:30:11Z" ,
6+ "aliases" : [
7+ " CVE-2025-12217"
8+ ],
9+ "details" : " SNMP Default Community String (public).This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5." ,
10+ "severity" : [
11+ {
12+ "type" : " CVSS_V4" ,
13+ "score" : " CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:L/SI:L/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
14+ }
15+ ],
16+ "affected" : [],
17+ "references" : [
18+ {
19+ "type" : " ADVISORY" ,
20+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-12217"
21+ },
22+ {
23+ "type" : " WEB" ,
24+ "url" : " https://azure-access.com/security-advisories"
25+ }
26+ ],
27+ "database_specific" : {
28+ "cwe_ids" : [
29+ " CWE-1392"
30+ ],
31+ "severity" : " MODERATE" ,
32+ "github_reviewed" : false ,
33+ "github_reviewed_at" : null ,
34+ "nvd_published_at" : " 2025-10-25T16:15:40Z"
35+ }
36+ }
Original file line number Diff line number Diff line change 1+ {
2+ "schema_version" : " 1.4.0" ,
3+ "id" : " GHSA-985r-cgqx-57w2" ,
4+ "modified" : " 2025-10-25T18:30:11Z" ,
5+ "published" : " 2025-10-25T18:30:11Z" ,
6+ "aliases" : [
7+ " CVE-2025-12219"
8+ ],
9+ "details" : " Vulnerable Components in Azure Access OS.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5." ,
10+ "severity" : [
11+ {
12+ "type" : " CVSS_V4" ,
13+ "score" : " CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
14+ }
15+ ],
16+ "affected" : [],
17+ "references" : [
18+ {
19+ "type" : " ADVISORY" ,
20+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-12219"
21+ },
22+ {
23+ "type" : " WEB" ,
24+ "url" : " https://azure-access.com/security-advisories"
25+ }
26+ ],
27+ "database_specific" : {
28+ "cwe_ids" : [],
29+ "severity" : " CRITICAL" ,
30+ "github_reviewed" : false ,
31+ "github_reviewed_at" : null ,
32+ "nvd_published_at" : " 2025-10-25T16:15:40Z"
33+ }
34+ }
Original file line number Diff line number Diff line change 1+ {
2+ "schema_version" : " 1.4.0" ,
3+ "id" : " GHSA-pg65-5pm2-3j24" ,
4+ "modified" : " 2025-10-25T18:30:12Z" ,
5+ "published" : " 2025-10-25T18:30:11Z" ,
6+ "aliases" : [
7+ " CVE-2025-12220"
8+ ],
9+ "details" : " Busybox 1.31.1 - Multiple Known Vulnerabilities.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5." ,
10+ "severity" : [
11+ {
12+ "type" : " CVSS_V4" ,
13+ "score" : " CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
14+ }
15+ ],
16+ "affected" : [],
17+ "references" : [
18+ {
19+ "type" : " ADVISORY" ,
20+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-12220"
21+ },
22+ {
23+ "type" : " WEB" ,
24+ "url" : " https://azure-access.com/security-advisories"
25+ }
26+ ],
27+ "database_specific" : {
28+ "cwe_ids" : [],
29+ "severity" : " CRITICAL" ,
30+ "github_reviewed" : false ,
31+ "github_reviewed_at" : null ,
32+ "nvd_published_at" : " 2025-10-25T16:15:40Z"
33+ }
34+ }
Original file line number Diff line number Diff line change 1+ {
2+ "schema_version" : " 1.4.0" ,
3+ "id" : " GHSA-q6pv-p83m-gwhp" ,
4+ "modified" : " 2025-10-25T18:30:11Z" ,
5+ "published" : " 2025-10-25T18:30:11Z" ,
6+ "aliases" : [
7+ " CVE-2025-12218"
8+ ],
9+ "details" : " Weak Default Credentials.This issue affects BLU-IC2: through 1.19.5; BLU-IC4: through 1.19.5." ,
10+ "severity" : [
11+ {
12+ "type" : " CVSS_V4" ,
13+ "score" : " CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X"
14+ }
15+ ],
16+ "affected" : [],
17+ "references" : [
18+ {
19+ "type" : " ADVISORY" ,
20+ "url" : " https://nvd.nist.gov/vuln/detail/CVE-2025-12218"
21+ },
22+ {
23+ "type" : " WEB" ,
24+ "url" : " https://azure-access.com/security-advisories"
25+ }
26+ ],
27+ "database_specific" : {
28+ "cwe_ids" : [
29+ " CWE-1392"
30+ ],
31+ "severity" : " CRITICAL" ,
32+ "github_reviewed" : false ,
33+ "github_reviewed_at" : null ,
34+ "nvd_published_at" : " 2025-10-25T16:15:40Z"
35+ }
36+ }
You can’t perform that action at this time.
0 commit comments