CVE-2025-2777
CRITICAL EXPLOITED NUCLEISysAid On-Prem <= 23.3.40 - XML External Entity
Title source: nucleiExploitation Summary
CVE-2025-2777 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 1 public exploit from researchers including watchtowrlabs. A Nuclei detection template is also available.
AI-analyzed exploit summary This repository contains a functional exploit PoC for a pre-authentication RCE chain in SysAid (CVE-2025-2775, CVE-2025-2776, CVE-2025-2777, CVE-2025-2778). The exploit leverages XXE to leak credentials and then executes arbitrary commands via API endpoint manipulation.
Description
SysAid On-Prem versions <= 23.3.40 are vulnerable to an unauthenticated XML External Entity (XXE) vulnerability in the lshw processing functionality, allowing for administrator account takeover and file read primitives.
Exploits (1)
This repository contains a functional exploit PoC for a pre-authentication RCE chain in SysAid (CVE-2025-2775, CVE-2025-2776, CVE-2025-2777, CVE-2025-2778). The exploit leverages XXE to leak credentials and then executes arbitrary commands via API endpoint manipulation.
Nuclei Templates (1)
http.favicon.hash:"1540720428"
icon_hash=1540720428
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L