CVE-2025-66956
Critical severity, CVSS 9.9. EPSS: 0.5% chance of exploitation in the next 30 days.
Insecure Access Control in Contact Plan, E-Mail, SMS and Fax components in Asseco SEE Live 2.0 allows remote attackers to access and execute attachments via a computable URL.
Published 2026-03-11. Last modified 2026-07-05.