National Cyber Warfare Foundation (NCWF)

CISA Warns: SysAid Flaws Under Active Attack Enable Remote File Access and SSRF


0 user ratings
2025-07-23 07:45:48
milo
Blue Team (CND)
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added two security flaws impacting SysAid IT support software to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation.
The vulnerabilities in question are listed below -

CVE-2025-2775 (CVSS score: 9.3) - An improper restriction of XML external entity (XXE) reference vulnerability in the



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/07/cisa-warns-sysaid-flaws-under-active.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.