BLU Products BLU-IC2 and BLU-IC4 Arbitrary File Write Vulnerability in /etc/timezone

Vulnerability

A vulnerability exists in BLU-IC2 and BLU-IC4 devices running versions through 1.19.5, allowing for arbitrary write access to the /etc/timezone file. This could potentially be exploited to manipulate timezone settings or for other malicious purposes.

Impact

Exploitation of this vulnerability could lead to unauthorized modifications of the system timezone, which may disrupt scheduled tasks or logging activities that rely on accurate timekeeping.

Added: Nov 1, 2025, 7:17 PM
Updated: Nov 1, 2025, 7:17 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
3.3
remediation
0.0
relevance
0.9
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.