CVE-2025-12509: Bizerba BRAIN2

High severity, CVSS 8.4. EPSS: 0.3% chance of exploitation in the next 30 days.

On a client with an admin user, a Global_Shipping script can be implemented. The script could later be executed on the BRAIN2 server with administrator rights.

Affected products

  • Bizerba BRAIN2: from 0.0, before 3.07 (fixed in 3.07)

Published 2025-10-31. Last modified 2026-10-07.