CVE-2025-66956
Severity CVSS v4.0:
Pending analysis
Type:
CWE-284
Improper Access Control
Publication date:
11/03/2026
Last modified:
13/03/2026
Description
Insecure Access Control in Contact Plan, E-Mail, SMS and Fax components in Asseco SEE Live 2.0 allows remote attackers to access and execute attachments via a computable URL.
Impact
Base Score 3.x
9.90
Severity 3.x
CRITICAL



