Vulnerabilities (CVE)

Filtered by vendor Asseco Subscribe
Filtered by product Live
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-66955 1 Asseco 1 Live 2026-06-02 N/A 6.5 MEDIUM
Local File Inclusion in Contact Plan, E-Mail, SMS and Fax components in Asseco SEE Live 2.0 allows remote authenticated users to access files on the host via "path" parameter in the downloadAttachment and downloadAttachmentFromPath API calls.