Topic: xxe vulnerabilities cve-2025-2775 cve-2025-2776
-
CISA Alerts: Hackers Exploiting SysAid Flaws in Active Attacks
Federal cybersecurity officials warn of active attacks exploiting unpatched SysAid IT systems, risking unauthorized access to sensitive data and administrative controls. Two critical XXE vulnerabilities (CVE-2025-2775 and CVE-2025-2776) allow file extraction without authentication, with patches a...
Read More »