Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-66955

Local File Inclusion in Contact Plan, E-Mail, SMS and Fax components in Asseco SEE Live 2.0 allows remote authenticated users to access files on the host via "path" parameter in the downloadAttachment and downloadAttachmentFromPath API calls.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 19.2%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2025-66955
  • Asseco » Live » Version: 2.0
    cpe:2.3:a:asseco:live:2.0


Contact Us

Shodan ® - All rights reserved